@@ -2,26 +2,26 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-d5e66b4b-7566-4d32-a557-46c6265be44c
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-88d332a2-30f1-417a-8374-d7633603c2a4
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.1
8
- Created: 2024-09-02T00:34:17Z
8
+ Created: 2024-09-09T00:37:12Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
12
12
PackageName: cve-bin-tool
13
13
SPDXID: SPDXRef-Package-1-cve-bin-tool
14
- PackageVersion: 3.4rc1
14
+ PackageVersion: 3.4
15
15
PrimaryPackagePurpose: APPLICATION
16
16
PackageSupplier: Person: Terri Oda (
[email protected] )
17
- PackageDownloadLocation: https://pypi.org/project/cve-bin-tool/3.4rc1
17
+ PackageDownloadLocation: https://pypi.org/project/cve-bin-tool/3.4
18
18
FilesAnalyzed: false
19
19
PackageLicenseDeclared: GPL-3.0-or-later
20
20
PackageLicenseConcluded: GPL-3.0-or-later
21
21
PackageCopyrightText: NOASSERTION
22
22
PackageSummary: <text>CVE Binary Checker Tool</text>
23
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cve-bin-tool@3.4rc1
24
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.4rc1 :*:*:*:*:*:*:*
23
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cve-bin-tool@3.4
24
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.4 :*:*:*:*:*:*:*
25
25
#####
26
26
27
27
PackageName: aiohttp
@@ -119,17 +119,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:multidict:6.0.5:*:*:*:*
119
119
120
120
PackageName: yarl
121
121
SPDXID: SPDXRef-Package-8-yarl
122
- PackageVersion: 1.9.7
122
+ PackageVersion: 1.11.0
123
123
PrimaryPackagePurpose: LIBRARY
124
124
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
125
- PackageDownloadLocation: https://pypi.org/project/yarl/1.9.7
125
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.11.0
126
126
FilesAnalyzed: false
127
127
PackageLicenseDeclared: Apache-2.0
128
128
PackageLicenseConcluded: Apache-2.0
129
129
PackageCopyrightText: NOASSERTION
130
130
PackageSummary: <text>Yet another URL library</text>
131
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/yarl@1.9.7
132
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.7 :*:*:*:*:*:*:*
131
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/yarl@1.11.0
132
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.11.0 :*:*:*:*:*:*:*
133
133
#####
134
134
135
135
PackageName: idna
@@ -181,19 +181,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.6:*:*:*:*:*:*:*
181
181
182
182
PackageName: cvss
183
183
SPDXID: SPDXRef-Package-12-cvss
184
- PackageVersion: 3.1
184
+ PackageVersion: 3.2
185
185
PrimaryPackagePurpose: LIBRARY
186
186
PackageSupplier: Organization: Stanislav Red Hat Product Security (
[email protected] )
187
- PackageDownloadLocation: https://pypi.org/project/cvss/3.1
187
+ PackageDownloadLocation: https://pypi.org/project/cvss/3.2
188
188
FilesAnalyzed: false
189
- PackageChecksum: SHA1: e4cf69bea6bcfa1cbc38dca13b9ec8bf3363a475
190
189
PackageLicenseDeclared: NOASSERTION
191
190
PackageLicenseConcluded: LGPL-3.0-or-later
192
191
PackageLicenseComments: <text>cvss declares LGPLv3+ which is not currently a valid SPDX License identifier or expression.</text>
193
192
PackageCopyrightText: NOASSERTION
194
193
PackageSummary: <text>CVSS2/3/4 library with interactive calculator for Python 2 and Python 3</text>
195
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cvss@3.1
196
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:stanislav_red_hat_product_security:cvss:3.1 :*:*:*:*:*:*:*
194
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cvss@3.2
195
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:stanislav_red_hat_product_security:cvss:3.2 :*:*:*:*:*:*:*
197
196
#####
198
197
199
198
PackageName: defusedxml
@@ -553,32 +552,32 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:24.
553
552
554
553
PackageName: cryptography
555
554
SPDXID: SPDXRef-Package-35-cryptography
556
- PackageVersion: 43.0.0
555
+ PackageVersion: 43.0.1
557
556
PrimaryPackagePurpose: LIBRARY
558
557
PackageSupplier: Organization: The cryptography developers The Python Cryptographic Authority and individual contributors (
[email protected] )
559
- PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.0
558
+ PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.1
560
559
FilesAnalyzed: false
561
560
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
562
561
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
563
562
PackageCopyrightText: NOASSERTION
564
563
PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
565
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
566
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.0 :*:*:*:*:*:*:*
564
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
565
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.1 :*:*:*:*:*:*:*
567
566
#####
568
567
569
568
PackageName: cffi
570
569
SPDXID: SPDXRef-Package-36-cffi
571
- PackageVersion: 1.17.0
570
+ PackageVersion: 1.17.1
572
571
PrimaryPackagePurpose: LIBRARY
573
572
PackageSupplier: Organization: Armin Maciej Fijalkowski (
[email protected] )
574
- PackageDownloadLocation: https://pypi.org/project/cffi/1.17.0
573
+ PackageDownloadLocation: https://pypi.org/project/cffi/1.17.1
575
574
FilesAnalyzed: false
576
575
PackageLicenseDeclared: MIT
577
576
PackageLicenseConcluded: MIT
578
577
PackageCopyrightText: NOASSERTION
579
578
PackageSummary: <text>Foreign Function Interface for Python calling C code.</text>
580
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
0
581
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:armin_maciej_fijalkowski:cffi:1.17.0 :*:*:*:*:*:*:*
579
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
580
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:armin_maciej_fijalkowski:cffi:1.17.1 :*:*:*:*:*:*:*
582
581
#####
583
582
584
583
PackageName: pycparser
@@ -1039,17 +1038,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1039
1038
1040
1039
PackageName: setuptools
1041
1040
SPDXID: SPDXRef-Package-66-setuptools
1042
- PackageVersion: 74.0.0
1041
+ PackageVersion: 74.1.2
1043
1042
PrimaryPackagePurpose: LIBRARY
1044
1043
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1045
- PackageDownloadLocation: https://pypi.org/project/setuptools/74.0.0
1044
+ PackageDownloadLocation: https://pypi.org/project/setuptools/74.1.2
1046
1045
FilesAnalyzed: false
1047
1046
PackageLicenseDeclared: NOASSERTION
1048
1047
PackageLicenseConcluded: NOASSERTION
1049
1048
PackageCopyrightText: NOASSERTION
1050
1049
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1051
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@74.0.0
1052
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:74.0.0 :*:*:*:*:*:*:*
1050
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@74.1.2
1051
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:74.1.2 :*:*:*:*:*:*:*
1053
1052
#####
1054
1053
1055
1054
PackageName: xmlschema
0 commit comments