Skip to content

Commit 70b921a

Browse files
authored
chore: update SBOM for Python 3.10
1 parent e19ee4b commit 70b921a

File tree

2 files changed

+146
-130
lines changed

2 files changed

+146
-130
lines changed

sbom/cve-bin-tool-py3.10.json

Lines changed: 85 additions & 71 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.4.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.4",
5-
"serialNumber": "urn:uuid673325fb-59a0-4fda-8de9-6892bbf3c65a",
5+
"serialNumber": "urn:uuida3d53afb-2d70-4c03-9ecf-07b223bcbea4",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2023-05-08T01:13:28Z",
8+
"timestamp": "2023-05-15T00:31:35Z",
99
"tools": [
1010
{
1111
"name": "sbom4python",
@@ -23,7 +23,7 @@
2323
"type": "application",
2424
"bom-ref": "1-cve-bin-tool",
2525
"name": "cve-bin-tool",
26-
"version": "3.2.1.dev0",
26+
"version": "3.2.1rc0",
2727
"supplier": {
2828
"name": "Terri Oda",
2929
"contact": [
@@ -32,7 +32,7 @@
3232
}
3333
]
3434
},
35-
"cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.2.1.dev0:*:*:*:*:*:*:*",
35+
"cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.2.1rc0:*:*:*:*:*:*:*",
3636
"description": "CVE Binary Checker Tool",
3737
"licenses": [
3838
{
@@ -49,12 +49,12 @@
4949
"comment": "Home page for project"
5050
},
5151
{
52-
"url": "https://pypi.org/project/cve-bin-tool/3.2.1.dev0",
52+
"url": "https://pypi.org/project/cve-bin-tool/3.2.1rc0",
5353
"type": "distribution",
5454
"comment": "Download location for component"
5555
}
5656
],
57-
"purl": "pkg:pypi/[email protected].1.dev0"
57+
"purl": "pkg:pypi/[email protected].1rc0"
5858
},
5959
{
6060
"type": "library",
@@ -1377,7 +1377,7 @@
13771377
"type": "library",
13781378
"bom-ref": "37-google-auth",
13791379
"name": "google-auth",
1380-
"version": "2.17.3",
1380+
"version": "2.18.0",
13811381
"supplier": {
13821382
"name": "Google Cloud Platform",
13831383
"contact": [
@@ -1386,7 +1386,7 @@
13861386
}
13871387
]
13881388
},
1389-
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.17.3:*:*:*:*:*:*:*",
1389+
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.18.0:*:*:*:*:*:*:*",
13901390
"description": "Google Authentication Library",
13911391
"licenses": [
13921392
{
@@ -1403,12 +1403,12 @@
14031403
"comment": "Home page for project"
14041404
},
14051405
{
1406-
"url": "https://pypi.org/project/google-auth/2.17.3",
1406+
"url": "https://pypi.org/project/google-auth/2.18.0",
14071407
"type": "distribution",
14081408
"comment": "Download location for component"
14091409
}
14101410
],
1411-
"purl": "pkg:pypi/google-auth@2.17.3",
1411+
"purl": "pkg:pypi/google-auth@2.18.0",
14121412
"properties": [
14131413
{
14141414
"name": "License Comments",
@@ -1455,7 +1455,44 @@
14551455
},
14561456
{
14571457
"type": "library",
1458-
"bom-ref": "39-monotonic",
1458+
"bom-ref": "39-urllib3",
1459+
"name": "urllib3",
1460+
"version": "1.26.15",
1461+
"supplier": {
1462+
"name": "Andrey Petrov",
1463+
"contact": [
1464+
{
1465+
"email": "[email protected]"
1466+
}
1467+
]
1468+
},
1469+
"cpe": "cpe:2.3:a:andrey_petrov:urllib3:1.26.15:*:*:*:*:*:*:*",
1470+
"description": "HTTP library with thread-safe connection pooling, file post, and more.",
1471+
"licenses": [
1472+
{
1473+
"license": {
1474+
"id": "MIT",
1475+
"url": "https://opensource.org/licenses/MIT"
1476+
}
1477+
}
1478+
],
1479+
"externalReferences": [
1480+
{
1481+
"url": "https://urllib3.readthedocs.io/",
1482+
"type": "website",
1483+
"comment": "Home page for project"
1484+
},
1485+
{
1486+
"url": "https://pypi.org/project/urllib3/1.26.15",
1487+
"type": "distribution",
1488+
"comment": "Download location for component"
1489+
}
1490+
],
1491+
"purl": "pkg:pypi/[email protected]"
1492+
},
1493+
{
1494+
"type": "library",
1495+
"bom-ref": "40-monotonic",
14591496
"name": "monotonic",
14601497
"version": "1.6",
14611498
"supplier": {
@@ -1498,7 +1535,7 @@
14981535
},
14991536
{
15001537
"type": "library",
1501-
"bom-ref": "40-jinja2",
1538+
"bom-ref": "41-jinja2",
15021539
"name": "jinja2",
15031540
"version": "3.1.2",
15041541
"supplier": {
@@ -1535,7 +1572,7 @@
15351572
},
15361573
{
15371574
"type": "library",
1538-
"bom-ref": "41-markupsafe",
1575+
"bom-ref": "42-markupsafe",
15391576
"name": "markupsafe",
15401577
"version": "2.1.2",
15411578
"supplier": {
@@ -1572,7 +1609,7 @@
15721609
},
15731610
{
15741611
"type": "library",
1575-
"bom-ref": "42-jsonschema",
1612+
"bom-ref": "43-jsonschema",
15761613
"name": "jsonschema",
15771614
"version": "4.17.3",
15781615
"supplier": {
@@ -1599,7 +1636,7 @@
15991636
},
16001637
{
16011638
"type": "library",
1602-
"bom-ref": "43-pyrsistent",
1639+
"bom-ref": "44-pyrsistent",
16031640
"name": "pyrsistent",
16041641
"version": "0.19.3",
16051642
"supplier": {
@@ -1636,7 +1673,7 @@
16361673
},
16371674
{
16381675
"type": "library",
1639-
"bom-ref": "44-lib4sbom",
1676+
"bom-ref": "45-lib4sbom",
16401677
"name": "lib4sbom",
16411678
"version": "0.3.1",
16421679
"supplier": {
@@ -1673,7 +1710,7 @@
16731710
},
16741711
{
16751712
"type": "library",
1676-
"bom-ref": "45-pyyaml",
1713+
"bom-ref": "46-pyyaml",
16771714
"name": "pyyaml",
16781715
"version": "6.0",
16791716
"supplier": {
@@ -1710,7 +1747,7 @@
17101747
},
17111748
{
17121749
"type": "library",
1713-
"bom-ref": "46-semantic-version",
1750+
"bom-ref": "47-semantic-version",
17141751
"name": "semantic-version",
17151752
"version": "2.10.0",
17161753
"supplier": {
@@ -1753,7 +1790,7 @@
17531790
},
17541791
{
17551792
"type": "library",
1756-
"bom-ref": "47-packaging",
1793+
"bom-ref": "48-packaging",
17571794
"name": "packaging",
17581795
"version": "21.3",
17591796
"supplier": {
@@ -1795,7 +1832,7 @@
17951832
},
17961833
{
17971834
"type": "library",
1798-
"bom-ref": "48-plotly",
1835+
"bom-ref": "49-plotly",
17991836
"name": "plotly",
18001837
"version": "5.14.1",
18011838
"supplier": {
@@ -1832,7 +1869,7 @@
18321869
},
18331870
{
18341871
"type": "library",
1835-
"bom-ref": "49-tenacity",
1872+
"bom-ref": "50-tenacity",
18361873
"name": "tenacity",
18371874
"version": "8.2.2",
18381875
"supplier": {
@@ -1875,7 +1912,7 @@
18751912
},
18761913
{
18771914
"type": "library",
1878-
"bom-ref": "50-requests",
1915+
"bom-ref": "51-requests",
18791916
"name": "requests",
18801917
"version": "2.30.0",
18811918
"supplier": {
@@ -1918,7 +1955,7 @@
19181955
},
19191956
{
19201957
"type": "library",
1921-
"bom-ref": "51-certifi",
1958+
"bom-ref": "52-certifi",
19221959
"name": "certifi",
19231960
"version": "2023.5.7",
19241961
"supplier": {
@@ -1953,30 +1990,6 @@
19531990
],
19541991
"purl": "pkg:pypi/[email protected]"
19551992
},
1956-
{
1957-
"type": "library",
1958-
"bom-ref": "52-urllib3",
1959-
"name": "urllib3",
1960-
"version": "2.0.2",
1961-
"supplier": {
1962-
"name": "Andrey Petrov",
1963-
"contact": [
1964-
{
1965-
"email": "[email protected]"
1966-
}
1967-
]
1968-
},
1969-
"cpe": "cpe:2.3:a:andrey_petrov:urllib3:2.0.2:*:*:*:*:*:*:*",
1970-
"description": "HTTP library with thread-safe connection pooling, file post, and more.",
1971-
"externalReferences": [
1972-
{
1973-
"url": "https://pypi.org/project/urllib3/2.0.2",
1974-
"type": "distribution",
1975-
"comment": "Download location for component"
1976-
}
1977-
],
1978-
"purl": "pkg:pypi/[email protected]"
1979-
},
19801993
{
19811994
"type": "library",
19821995
"bom-ref": "53-rich",
@@ -2302,17 +2315,17 @@
23022315
"14-defusedxml",
23032316
"15-distro",
23042317
"16-gsutil",
2305-
"40-jinja2",
2306-
"42-jsonschema",
2307-
"44-lib4sbom",
2308-
"47-packaging",
2309-
"48-plotly",
2310-
"45-pyyaml",
2311-
"50-requests",
2318+
"41-jinja2",
2319+
"43-jsonschema",
2320+
"45-lib4sbom",
2321+
"48-packaging",
2322+
"49-plotly",
2323+
"46-pyyaml",
2324+
"51-requests",
23122325
"53-rich",
23132326
"57-rpmfile",
23142327
"58-toml",
2315-
"52-urllib3",
2328+
"39-urllib3",
23162329
"59-xmlschema",
23172330
"61-zstandard"
23182331
]
@@ -2359,7 +2372,7 @@
23592372
"37-google-auth",
23602373
"22-google-reauth",
23612374
"25-httplib2",
2362-
"39-monotonic",
2375+
"40-monotonic",
23632376
"31-pyopenssl",
23642377
"35-retry-decorator",
23652378
"24-six"
@@ -2451,49 +2464,50 @@
24512464
"38-cachetools",
24522465
"29-pyasn1-modules",
24532466
"30-rsa",
2454-
"24-six"
2467+
"24-six",
2468+
"39-urllib3"
24552469
]
24562470
},
24572471
{
2458-
"ref": "40-jinja2",
2472+
"ref": "41-jinja2",
24592473
"dependsOn": [
2460-
"41-markupsafe"
2474+
"42-markupsafe"
24612475
]
24622476
},
24632477
{
2464-
"ref": "42-jsonschema",
2478+
"ref": "43-jsonschema",
24652479
"dependsOn": [
24662480
"6-attrs",
2467-
"43-pyrsistent"
2481+
"44-pyrsistent"
24682482
]
24692483
},
24702484
{
2471-
"ref": "44-lib4sbom",
2485+
"ref": "45-lib4sbom",
24722486
"dependsOn": [
2473-
"45-pyyaml",
2474-
"46-semantic-version"
2487+
"46-pyyaml",
2488+
"47-semantic-version"
24752489
]
24762490
},
24772491
{
2478-
"ref": "47-packaging",
2492+
"ref": "48-packaging",
24792493
"dependsOn": [
24802494
"26-pyparsing"
24812495
]
24822496
},
24832497
{
2484-
"ref": "48-plotly",
2498+
"ref": "49-plotly",
24852499
"dependsOn": [
2486-
"47-packaging",
2487-
"49-tenacity"
2500+
"48-packaging",
2501+
"50-tenacity"
24882502
]
24892503
},
24902504
{
2491-
"ref": "50-requests",
2505+
"ref": "51-requests",
24922506
"dependsOn": [
2493-
"51-certifi",
2507+
"52-certifi",
24942508
"7-charset-normalizer",
24952509
"10-idna",
2496-
"52-urllib3"
2510+
"39-urllib3"
24972511
]
24982512
},
24992513
{

0 commit comments

Comments
 (0)