@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-a059f2f9-c142-41b3-b870-0e0c0f91d08b
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-3e09fd99-db2d-4685-ac0b-5dc0d4c7b348
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.10.4
8
- Created: 2024-04-22T00 :26:48Z
8
+ Created: 2024-04-29T00 :26:10Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -141,6 +141,7 @@ PrimaryPackagePurpose: LIBRARY
141
141
PackageSupplier: Person: Kim Davies (
[email protected] )
142
142
PackageDownloadLocation: https://pypi.org/project/idna/3.7
143
143
FilesAnalyzed: false
144
+ PackageChecksum: SHA1: 1d365e17e10d72d0b7876316fc7b9ca0eebdd38d
144
145
PackageLicenseDeclared: NOASSERTION
145
146
PackageLicenseConcluded: NOASSERTION
146
147
PackageCopyrightText: NOASSERTION
@@ -269,6 +270,7 @@ PrimaryPackagePurpose: LIBRARY
269
270
PackageSupplier: Person: Andrey Kislyuk (
[email protected] )
270
271
PackageDownloadLocation: https://pypi.org/project/argcomplete/3.3.0
271
272
FilesAnalyzed: false
273
+ PackageChecksum: SHA1: c7cc834df1fddcf94bd35b740fef7c7ab8e9c350
272
274
PackageLicenseDeclared: NOASSERTION
273
275
PackageLicenseConcluded: Apache-2.0
274
276
PackageLicenseComments: <text>argcomplete declares Apache Software License which is not currently a valid SPDX License identifier or expression.</text>
@@ -512,6 +514,7 @@ PrimaryPackagePurpose: LIBRARY
512
514
PackageSupplier: Organization: The Python Cryptographic Authority and individual contributors (
[email protected] )
513
515
PackageDownloadLocation: https://pypi.org/project/cryptography/42.0.5
514
516
FilesAnalyzed: false
517
+ PackageChecksum: SHA1: 33833f031d9d36234e11d9671be150d53b9e598d
515
518
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
516
519
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
517
520
PackageCopyrightText: NOASSERTION
@@ -543,6 +546,7 @@ PrimaryPackagePurpose: LIBRARY
543
546
PackageSupplier: Person: Eli Bendersky (
[email protected] )
544
547
PackageDownloadLocation: https://pypi.org/project/pycparser/2.22
545
548
FilesAnalyzed: false
549
+ PackageChecksum: SHA1: 129d32ef805d715d90a3b2035b13168c17ca63d2
546
550
PackageLicenseDeclared: BSD-3-Clause
547
551
PackageLicenseConcluded: BSD-3-Clause
548
552
PackageCopyrightText: NOASSERTION
@@ -639,6 +643,7 @@ PrimaryPackagePurpose: LIBRARY
639
643
PackageSupplier: Organization: Jason R. Coombs (
[email protected] )
640
644
PackageDownloadLocation: https://pypi.org/project/importlib_metadata/7.1.0
641
645
FilesAnalyzed: false
646
+ PackageChecksum: SHA1: f5d6b5f3f3f6fffe01b340c5a19562433db148a9
642
647
PackageLicenseDeclared: NOASSERTION
643
648
PackageLicenseConcluded: NOASSERTION
644
649
PackageCopyrightText: NOASSERTION
@@ -654,6 +659,7 @@ PrimaryPackagePurpose: LIBRARY
654
659
PackageSupplier: Organization: Jason R. Coombs (
[email protected] )
655
660
PackageDownloadLocation: https://pypi.org/project/zipp/3.18.1
656
661
FilesAnalyzed: false
662
+ PackageChecksum: SHA1: bfae83474a730e8cc9b8a71027fb859b46b3875c
657
663
PackageLicenseDeclared: NOASSERTION
658
664
PackageLicenseConcluded: NOASSERTION
659
665
PackageCopyrightText: NOASSERTION
@@ -669,6 +675,7 @@ PrimaryPackagePurpose: LIBRARY
669
675
PackageSupplier: Person: Barry Warsaw (
[email protected] )
670
676
PackageDownloadLocation: https://pypi.org/project/importlib_resources/6.4.0
671
677
FilesAnalyzed: false
678
+ PackageChecksum: SHA1: 1f4d3f10a3ed5d65b3092a39369c08e71e30a97c
672
679
PackageLicenseDeclared: NOASSERTION
673
680
PackageLicenseConcluded: NOASSERTION
674
681
PackageCopyrightText: NOASSERTION
@@ -740,17 +747,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specification
740
747
741
748
PackageName: referencing
742
749
SPDXID: SPDXRef-Package-47-referencing
743
- PackageVersion: 0.34 .0
750
+ PackageVersion: 0.35 .0
744
751
PrimaryPackagePurpose: LIBRARY
745
752
PackageSupplier: Person: Julian Berman
746
- PackageDownloadLocation: https://pypi.org/project/referencing/0.34 .0
753
+ PackageDownloadLocation: https://pypi.org/project/referencing/0.35 .0
747
754
FilesAnalyzed: false
748
755
PackageLicenseDeclared: NOASSERTION
749
756
PackageLicenseConcluded: NOASSERTION
750
757
PackageCopyrightText: NOASSERTION
751
758
PackageSummary: <text>JSON Referencing + Python</text>
752
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/referencing@0.34 .0
753
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.34 .0:*:*:*:*:*:*:*
759
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/referencing@0.35 .0
760
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.35 .0:*:*:*:*:*:*:*
754
761
#####
755
762
756
763
PackageName: rpds-py
@@ -785,17 +792,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:vinay_sajip:pkgutil-resolve-name:1.3.1
785
792
786
793
PackageName: lib4sbom
787
794
SPDXID: SPDXRef-Package-50-lib4sbom
788
- PackageVersion: 0.7.0
795
+ PackageVersion: 0.7.1
789
796
PrimaryPackagePurpose: LIBRARY
790
797
PackageSupplier: Person: Anthony Harrison (
[email protected] )
791
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.0
798
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.1
792
799
FilesAnalyzed: false
793
800
PackageLicenseDeclared: Apache-2.0
794
801
PackageLicenseConcluded: Apache-2.0
795
802
PackageCopyrightText: NOASSERTION
796
803
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
797
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
798
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.0 :*:*:*:*:*:*:*
804
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
805
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.1 :*:*:*:*:*:*:*
799
806
#####
800
807
801
808
PackageName: pyyaml
@@ -1044,6 +1051,7 @@ PrimaryPackagePurpose: LIBRARY
1044
1051
PackageSupplier: Organization: Guido van Jukka ukasz Michael (
[email protected] )
1045
1052
PackageDownloadLocation: https://pypi.org/project/typing_extensions/4.11.0
1046
1053
FilesAnalyzed: false
1054
+ PackageChecksum: SHA1: d4d929d44bd984350e2d17726362295f588eaace
1047
1055
PackageLicenseDeclared: NOASSERTION
1048
1056
PackageLicenseConcluded: NOASSERTION
1049
1057
PackageCopyrightText: NOASSERTION
@@ -1085,17 +1093,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:william_pearson:toml:0.10.2:*:*:*:*:*:
1085
1093
1086
1094
PackageName: xmlschema
1087
1095
SPDXID: SPDXRef-Package-69-xmlschema
1088
- PackageVersion: 3.3.0
1096
+ PackageVersion: 3.3.1
1089
1097
PrimaryPackagePurpose: LIBRARY
1090
1098
PackageSupplier: Person: Davide Brunato (
[email protected] )
1091
- PackageDownloadLocation: https://pypi.org/project/xmlschema/3.3.0
1099
+ PackageDownloadLocation: https://pypi.org/project/xmlschema/3.3.1
1092
1100
FilesAnalyzed: false
1093
1101
PackageLicenseDeclared: MIT
1094
1102
PackageLicenseConcluded: MIT
1095
1103
PackageCopyrightText: NOASSERTION
1096
1104
PackageSummary: <text>An XML Schema validator and decoder</text>
1097
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
1098
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:xmlschema:3.3.0 :*:*:*:*:*:*:*
1105
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
1106
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:xmlschema:3.3.1 :*:*:*:*:*:*:*
1099
1107
#####
1100
1108
1101
1109
PackageName: elementpath
0 commit comments