@@ -2,26 +2,26 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-ab06f588-e314-40f5-ae47-5ec7bb254f31
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-0628dc5c-a9ba-4bef-85a5-0bff8ab02543
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.10.1
8
- Created: 2023-11-27T00 :25:26Z
8
+ Created: 2023-12-04T00 :25:42Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
12
12
PackageName: cve-bin-tool
13
13
SPDXID: SPDXRef-Package-1-cve-bin-tool
14
- PackageVersion: 3.2.2.dev0
14
+ PackageVersion: 3.3a0
15
15
PrimaryPackagePurpose: APPLICATION
16
16
PackageSupplier: Person: Terri Oda (
[email protected] )
17
- PackageDownloadLocation: https://pypi.org/project/cve-bin-tool/3.2.2.dev0
17
+ PackageDownloadLocation: https://pypi.org/project/cve-bin-tool/3.3a0
18
18
FilesAnalyzed: false
19
19
PackageLicenseDeclared: GPL-3.0-or-later
20
20
PackageLicenseConcluded: GPL-3.0-or-later
21
21
PackageCopyrightText: NOASSERTION
22
22
PackageSummary: <text>CVE Binary Checker Tool</text>
23
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/cve-bin-tool@3.2.2.dev0
24
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.2.2.dev0 :*:*:*:*:*:*:*
23
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/cve-bin-tool@3.3a0
24
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.3a0 :*:*:*:*:*:*:*
25
25
#####
26
26
27
27
PackageName: aiohttp
@@ -474,17 +474,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:23.
474
474
475
475
PackageName: cryptography
476
476
SPDXID: SPDXRef-Package-31-cryptography
477
- PackageVersion: 41.0.5
477
+ PackageVersion: 41.0.7
478
478
PrimaryPackagePurpose: LIBRARY
479
479
PackageSupplier: Organization: The Python Cryptographic Authority and individual contributors (
[email protected] )
480
- PackageDownloadLocation: https://pypi.org/project/cryptography/41.0.5
480
+ PackageDownloadLocation: https://pypi.org/project/cryptography/41.0.7
481
481
FilesAnalyzed: false
482
482
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
483
483
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
484
484
PackageCopyrightText: NOASSERTION
485
485
PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
486
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
5
487
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_python_cryptographic_authority_and_individual_contributors:cryptography:41.0.5 :*:*:*:*:*:*:*
486
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
7
487
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_python_cryptographic_authority_and_individual_contributors:cryptography:41.0.7 :*:*:*:*:*:*:*
488
488
#####
489
489
490
490
PackageName: cffi
@@ -551,18 +551,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
551
551
552
552
PackageName: google-auth
553
553
SPDXID: SPDXRef-Package-36-google-auth
554
- PackageVersion: 2.23.4
554
+ PackageVersion: 2.24.0
555
555
PrimaryPackagePurpose: LIBRARY
556
556
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
557
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.23.4
557
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.24.0
558
558
FilesAnalyzed: false
559
559
PackageLicenseDeclared: NOASSERTION
560
560
PackageLicenseConcluded: Apache-2.0
561
561
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
562
562
PackageCopyrightText: NOASSERTION
563
563
PackageSummary: <text>Google Authentication Library</text>
564
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.23.4
565
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.23.4 :*:*:*:*:*:*:*
564
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.24.0
565
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.24.0 :*:*:*:*:*:*:*
566
566
#####
567
567
568
568
PackageName: cachetools
@@ -642,47 +642,47 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema:4.20.0:*:*:*:
642
642
643
643
PackageName: jsonschema-specifications
644
644
SPDXID: SPDXRef-Package-42-jsonschema-specifications
645
- PackageVersion: 2023.11.1
645
+ PackageVersion: 2023.11.2
646
646
PrimaryPackagePurpose: LIBRARY
647
647
PackageSupplier: Person: Julian Berman
648
- PackageDownloadLocation: https://pypi.org/project/jsonschema-specifications/2023.11.1
648
+ PackageDownloadLocation: https://pypi.org/project/jsonschema-specifications/2023.11.2
649
649
FilesAnalyzed: false
650
650
PackageLicenseDeclared: MIT
651
651
PackageLicenseConcluded: MIT
652
652
PackageCopyrightText: NOASSERTION
653
653
PackageSummary: <text>The JSON Schema meta-schemas and vocabularies, exposed as a Registry</text>
654
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
655
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specifications:2023.11.1 :*:*:*:*:*:*:*
654
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
655
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specifications:2023.11.2 :*:*:*:*:*:*:*
656
656
#####
657
657
658
658
PackageName: referencing
659
659
SPDXID: SPDXRef-Package-43-referencing
660
- PackageVersion: 0.31.0
660
+ PackageVersion: 0.31.1
661
661
PrimaryPackagePurpose: LIBRARY
662
662
PackageSupplier: Person: Julian Berman
663
- PackageDownloadLocation: https://pypi.org/project/referencing/0.31.0
663
+ PackageDownloadLocation: https://pypi.org/project/referencing/0.31.1
664
664
FilesAnalyzed: false
665
665
PackageLicenseDeclared: MIT
666
666
PackageLicenseConcluded: MIT
667
667
PackageCopyrightText: NOASSERTION
668
668
PackageSummary: <text>JSON Referencing + Python</text>
669
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
0
670
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.31.0 :*:*:*:*:*:*:*
669
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
670
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.31.1 :*:*:*:*:*:*:*
671
671
#####
672
672
673
673
PackageName: rpds-py
674
674
SPDXID: SPDXRef-Package-44-rpds-py
675
- PackageVersion: 0.13.1
675
+ PackageVersion: 0.13.2
676
676
PrimaryPackagePurpose: LIBRARY
677
677
PackageSupplier: Person: Julian Berman
678
- PackageDownloadLocation: https://pypi.org/project/rpds-py/0.13.1
678
+ PackageDownloadLocation: https://pypi.org/project/rpds-py/0.13.2
679
679
FilesAnalyzed: false
680
680
PackageLicenseDeclared: MIT
681
681
PackageLicenseConcluded: MIT
682
682
PackageCopyrightText: NOASSERTION
683
683
PackageSummary: <text>Python bindings to Rust's persistent data structures (rpds)</text>
684
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
685
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.13.1 :*:*:*:*:*:*:*
684
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
685
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.13.2 :*:*:*:*:*:*:*
686
686
#####
687
687
688
688
PackageName: lib4sbom
0 commit comments