@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-aaa91dd7-47bb-4ce8-b80c-b04e18631b28
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-0f3c0601-aa4c-44f2-9ea1-8d4b70b94f9a
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.10.4
8
- Created: 2024-04-22T00:26:28Z
8
+ Created: 2024-04-29T00:25:47Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -124,6 +124,7 @@ PrimaryPackagePurpose: LIBRARY
124
124
PackageSupplier: Person: Kim Davies (
[email protected] )
125
125
PackageDownloadLocation: https://pypi.org/project/idna/3.7
126
126
FilesAnalyzed: false
127
+ PackageChecksum: SHA1: 1d365e17e10d72d0b7876316fc7b9ca0eebdd38d
127
128
PackageLicenseDeclared: NOASSERTION
128
129
PackageLicenseConcluded: NOASSERTION
129
130
PackageCopyrightText: NOASSERTION
@@ -252,6 +253,7 @@ PrimaryPackagePurpose: LIBRARY
252
253
PackageSupplier: Person: Andrey Kislyuk (
[email protected] )
253
254
PackageDownloadLocation: https://pypi.org/project/argcomplete/3.3.0
254
255
FilesAnalyzed: false
256
+ PackageChecksum: SHA1: c7cc834df1fddcf94bd35b740fef7c7ab8e9c350
255
257
PackageLicenseDeclared: NOASSERTION
256
258
PackageLicenseConcluded: Apache-2.0
257
259
PackageLicenseComments: <text>argcomplete declares Apache Software License which is not currently a valid SPDX License identifier or expression.</text>
@@ -495,6 +497,7 @@ PrimaryPackagePurpose: LIBRARY
495
497
PackageSupplier: Organization: The Python Cryptographic Authority and individual contributors (
[email protected] )
496
498
PackageDownloadLocation: https://pypi.org/project/cryptography/42.0.5
497
499
FilesAnalyzed: false
500
+ PackageChecksum: SHA1: 33833f031d9d36234e11d9671be150d53b9e598d
498
501
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
499
502
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
500
503
PackageCopyrightText: NOASSERTION
@@ -526,6 +529,7 @@ PrimaryPackagePurpose: LIBRARY
526
529
PackageSupplier: Person: Eli Bendersky (
[email protected] )
527
530
PackageDownloadLocation: https://pypi.org/project/pycparser/2.22
528
531
FilesAnalyzed: false
532
+ PackageChecksum: SHA1: 129d32ef805d715d90a3b2035b13168c17ca63d2
529
533
PackageLicenseDeclared: BSD-3-Clause
530
534
PackageLicenseConcluded: BSD-3-Clause
531
535
PackageCopyrightText: NOASSERTION
@@ -678,17 +682,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specification
678
682
679
683
PackageName: referencing
680
684
SPDXID: SPDXRef-Package-43-referencing
681
- PackageVersion: 0.34 .0
685
+ PackageVersion: 0.35 .0
682
686
PrimaryPackagePurpose: LIBRARY
683
687
PackageSupplier: Person: Julian Berman
684
- PackageDownloadLocation: https://pypi.org/project/referencing/0.34 .0
688
+ PackageDownloadLocation: https://pypi.org/project/referencing/0.35 .0
685
689
FilesAnalyzed: false
686
690
PackageLicenseDeclared: NOASSERTION
687
691
PackageLicenseConcluded: NOASSERTION
688
692
PackageCopyrightText: NOASSERTION
689
693
PackageSummary: <text>JSON Referencing + Python</text>
690
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/referencing@0.34 .0
691
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.34 .0:*:*:*:*:*:*:*
694
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/referencing@0.35 .0
695
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.35 .0:*:*:*:*:*:*:*
692
696
#####
693
697
694
698
PackageName: rpds-py
@@ -708,17 +712,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.18.0:*:*:*:*:*
708
712
709
713
PackageName: lib4sbom
710
714
SPDXID: SPDXRef-Package-45-lib4sbom
711
- PackageVersion: 0.7.0
715
+ PackageVersion: 0.7.1
712
716
PrimaryPackagePurpose: LIBRARY
713
717
PackageSupplier: Person: Anthony Harrison (
[email protected] )
714
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.0
718
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.1
715
719
FilesAnalyzed: false
716
720
PackageLicenseDeclared: Apache-2.0
717
721
PackageLicenseConcluded: Apache-2.0
718
722
PackageCopyrightText: NOASSERTION
719
723
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
720
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
721
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.0 :*:*:*:*:*:*:*
724
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
725
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.1 :*:*:*:*:*:*:*
722
726
#####
723
727
724
728
PackageName: pyyaml
@@ -977,17 +981,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.0.0:*:*:*:*:*:*:*
977
981
978
982
PackageName: xmlschema
979
983
SPDXID: SPDXRef-Package-62-xmlschema
980
- PackageVersion: 3.3.0
984
+ PackageVersion: 3.3.1
981
985
PrimaryPackagePurpose: LIBRARY
982
986
PackageSupplier: Person: Davide Brunato (
[email protected] )
983
- PackageDownloadLocation: https://pypi.org/project/xmlschema/3.3.0
987
+ PackageDownloadLocation: https://pypi.org/project/xmlschema/3.3.1
984
988
FilesAnalyzed: false
985
989
PackageLicenseDeclared: MIT
986
990
PackageLicenseConcluded: MIT
987
991
PackageCopyrightText: NOASSERTION
988
992
PackageSummary: <text>An XML Schema validator and decoder</text>
989
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
990
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:xmlschema:3.3.0 :*:*:*:*:*:*:*
993
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
994
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:xmlschema:3.3.1 :*:*:*:*:*:*:*
991
995
#####
992
996
993
997
PackageName: elementpath
0 commit comments