{
	"SPDXID":"SPDXRef-DOCUMENT",
	"name":"pesign-0.116-4.oe2409.aarch64.rpm",
	"spdxVersion":"SPDX-2.2",
	"creationInfo":{
		"created":"2024-09-30T03:30:07.5589037Z",
		"creators":"[openeuler_creator]"
	},
	"dataLicense":"CC0-1.0",
	"documentNamespace":"https://repo.openeuler.org/security/data/sbom/pesign-0.116-4.oe2409.aarch64.rpm",
	"packages":[
		{
			"SPDXID":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-dd75660d-d288-486e-bdd8-32bba46e20ce",
			"name":"bash",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"0648f5dde35fc9fcf57a6a9c95dae3273cbb784ba492931ff20874906827ed39"
				}
			],
			"description":"Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/bash@5.2.21-1.oe2409?arch=aarch64&epoch=0&upstream=bash-5.2.21-1.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/bash",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"It is the Bourne Again Shell",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:5.2.21-1.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-7a6cf0cb-02a1-440f-b6ac-b5e1be30170f",
			"name":"coreutils",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"2f5af68ccffa26a602437b1920467462bfd75facc2bb18bdc2fd9140eb7dc702"
				}
			],
			"description":"These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/coreutils@9.5-4.oe2409?arch=aarch64&epoch=0&upstream=coreutils-9.5-4.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/coreutils/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A set of basic GNU tools commonly used in shell scripts",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:9.5-4.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-efivar-libs-38-9191d8b1-d01e-4dda-ad85-81b068b0f8fb-a1a75382-2ea0-4846-bb4f-9f28f5a00fce",
			"name":"efivar-libs",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"427caced0fad1cb9ee2b430d88fc3171719388753334b62055ca4dfecf4990a0"
				}
			],
			"description":"Libraries for efivar.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/efivar-libs@38-6.oe2409?arch=aarch64&epoch=0&upstream=efivar-38-6.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/rhboot/efivar",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Libraries for efivar",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:38-6.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-1edd077f-e787-46a8-8c52-a199bdfab598",
			"name":"glibc",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"f83727d5acc81f8f92521d78f89a59332782c39c8e4d98151505e6bc01fdca98"
				}
			],
			"description":"The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/glibc@2.38-34.oe2409?arch=aarch64&epoch=0&upstream=glibc-2.38-34.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.gnu.org/software/glibc/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"The GNU libc libraries",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.38-34.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-libuuid-2.39.1-877493ac-b7b9-4ce7-a8f3-c4004d9badae-bc8d3f0a-b088-4acc-b047-04b9a71ded09",
			"name":"libuuid",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"d894a0ecd13293d426f9e20261518ab3529153da1521fb7d45e50dfbb9fec404"
				}
			],
			"description":"This package is the universally unique ID library.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/libuuid@2.39.1-13.oe2409?arch=aarch64&epoch=0&upstream=util-linux-2.39.1-13.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Universally unique ID library",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.39.1-13.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-nspr-4.35.0-7ecc8d32-214f-4d12-b416-e7c39dea4c77-de6098a8-427f-4c55-b2b0-faf32ebafed1",
			"name":"nspr",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"7c65720d6f4afc61970e222438c24063572aa775d2acb970d199b2cec01887bf"
				}
			],
			"description":"NetScape Portable Runtime (NSPR) provides platform independence for non-GUI\noperating system facilities. These facilities include threads, thread\nsynchronization, normal file and network I/O, interval timing and calendar\ntime, basic memory management (malloc and free) and shared library linking.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/nspr@4.35.0-3.oe2409?arch=aarch64&epoch=0&upstream=nspr-4.35.0-3.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.mozilla.org/projects/nspr",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Netscape Portable Runtime",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:4.35.0-3.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-nss-3.94.0-bdfba06e-c6e7-4a01-a61d-bcde04ca9489-f425e5b1-0901-4fa9-abf0-14dc18c6c570",
			"name":"nss",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"457f550c2ad9b9a0c3a876e7415b236e3639629bf66173fab67408ede3df945e"
				}
			],
			"description":"Network Security Services (NSS) is a set of libraries designed to\nsupport cross-platform development of security-enabled client and\nserver applications. Applications built with NSS can support SSL v2\nand v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509\nv3 certificates, and other security standards.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/nss@3.94.0-6.oe2409?arch=aarch64&epoch=0&upstream=nss-3.94.0-6.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.mozilla.org/projects/security/pki/nss/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Network Security Services",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:3.94.0-6.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-nss-util-3.94.0-fb455e67-8314-41f3-96bf-3213c8c8bdfa-0cba5ab3-0bcc-46fa-af22-e9acd5460728",
			"name":"nss-util",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"520ae527b6569bf4befee908d60c188a4ed53790d290c240ca9350f9a4839cbd"
				}
			],
			"description":"Utilities for Network Security Services and the Softoken module\nmanipulate the NSS certificate and key database.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/nss-util@3.94.0-6.oe2409?arch=aarch64&epoch=0&upstream=nss-3.94.0-6.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.mozilla.org/projects/security/pki/nss/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Network Security Services Utilities Library",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:3.94.0-6.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-popt-1.19-330c1fa5-2f14-4a3c-b8d0-a2e9c13225e8-18d0d153-6ea2-43ba-9943-385f2436fc19",
			"name":"popt",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"c3cde9366643c2b9436e4a7d2d9cc24074e47e2a783435a955e91a816e63f55a"
				}
			],
			"description":"The popt library exists essentially for parsing command line options. Some\nspecific advantages of popt are no global variables (allowing multiple passes\nin parsing argv), parsing an arbitrary array of argv-style elements (allowing\nparsing of command-line-strings from any source), a standard method of option\naliasing, ability to exec external option filters, and automatic generation\nof help and usage messages.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/popt@1.19-4.oe2409?arch=aarch64&epoch=0&upstream=popt-1.19-4.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/rpm-software-management/popt/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"C library for parsing command line parameters",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:1.19-4.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-python3-3.11.6-46a48388-2814-4f07-af71-9388edc427ec-9fe87239-5f3f-4d5d-9e56-b41f6398c4af",
			"name":"python3",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"08bd7937d659d460eb57f421500cb0fd93e554c236a1ca9b5bb9efdd64c21d48"
				}
			],
			"description":"Python combines remarkable power with very clear syntax. It has modules,\nclasses, exceptions, very high level dynamic data types, and dynamic\ntyping. There are interfaces to many system calls and libraries, as well\nas to various windowing systems. New built-in modules are easily written\nin C or C++ (or other languages, depending on the chosen implementation).\nPython is also usable as an extension language for applications written\nin other languages that need easy-to-use scripting or automation interfaces.\n\nThis package Provides python version 3.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/python3@3.11.6-5.oe2409?arch=aarch64&epoch=0&upstream=python3-3.11.6-5.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.python.org/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Interpreter of the Python3 programming language",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:3.11.6-5.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-rpm-4.18.2-7b096ca1-9ef8-49f0-8a89-231470502d33-dd174dc0-68d3-449b-9fea-a9afa0fecca5",
			"name":"rpm",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"c93dca3486cfb3dc0a06a7aab93c1a3388ef7048f38567e937a070fa49a7e44d"
				}
			],
			"description":"The RPM Package Manager (RPM) is a powerful package management system capability as below\n\n-building computer software from source into easily distributable packages\n-installing, updating and uninstalling packaged software\n-querying detailed information about the packaged software, whether installed or not\n-verifying integrity of packaged software and resulting software installation",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/rpm@4.18.2-15.oe2409?arch=aarch64&epoch=0&upstream=rpm-4.18.2-15.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.rpm.org/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"RPM Package Manager",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:4.18.2-15.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-shadow-4.14.3-8eb31808-18ef-4ca8-9362-217720683e5b-ce208435-b6a7-4d6c-afa2-3bf457807d6a",
			"name":"shadow",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"0b4e5e30e7e79208c364dc951155b341b6353207412480e6adf95f89d270d9a9"
				}
			],
			"description":"This package includes the necessary programs for converting plain\npassword files to the shadow password format and to manage user and\ngroup accounts.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/shadow@4.14.3-4.oe2409?arch=aarch64&epoch=2&upstream=shadow-4.14.3-4.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://pkg-shadow.alioth.debian.org/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Tools for managing accounts and shadow password files",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"2:4.14.3-4.oe2409"
		}
	],
	"relationships":[
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-dd75660d-d288-486e-bdd8-32bba46e20ce"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-7a6cf0cb-02a1-440f-b6ac-b5e1be30170f"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-efivar-libs-38-9191d8b1-d01e-4dda-ad85-81b068b0f8fb-a1a75382-2ea0-4846-bb4f-9f28f5a00fce"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-1edd077f-e787-46a8-8c52-a199bdfab598"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-libuuid-2.39.1-877493ac-b7b9-4ce7-a8f3-c4004d9badae-bc8d3f0a-b088-4acc-b047-04b9a71ded09"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-nspr-4.35.0-7ecc8d32-214f-4d12-b416-e7c39dea4c77-de6098a8-427f-4c55-b2b0-faf32ebafed1"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-nss-3.94.0-bdfba06e-c6e7-4a01-a61d-bcde04ca9489-f425e5b1-0901-4fa9-abf0-14dc18c6c570"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-nss-util-3.94.0-fb455e67-8314-41f3-96bf-3213c8c8bdfa-0cba5ab3-0bcc-46fa-af22-e9acd5460728"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-popt-1.19-330c1fa5-2f14-4a3c-b8d0-a2e9c13225e8-18d0d153-6ea2-43ba-9943-385f2436fc19"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-python3-3.11.6-46a48388-2814-4f07-af71-9388edc427ec-9fe87239-5f3f-4d5d-9e56-b41f6398c4af"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-rpm-4.18.2-7b096ca1-9ef8-49f0-8a89-231470502d33-dd174dc0-68d3-449b-9fea-a9afa0fecca5"
		},
		{
			"spdxElementId":"SPDXRef-rpm-pesign-116-b6cf5da2-e173-460a-b2e9-5a617a861c0d",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-shadow-4.14.3-8eb31808-18ef-4ca8-9362-217720683e5b-ce208435-b6a7-4d6c-afa2-3bf457807d6a"
		}
	]
}