-
Notifications
You must be signed in to change notification settings - Fork 32
Expand file tree
/
Copy pathSBOM.spdx.json
More file actions
133 lines (133 loc) · 4.58 KB
/
SBOM.spdx.json
File metadata and controls
133 lines (133 loc) · 4.58 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
{
"SPDXID": "SPDXRef-DOCUMENT",
"spdxVersion": "SPDX-2.3",
"creationInfo": {
"created": "2026-01-26T02:07:30Z",
"creators": [
"Organization: NXP"
],
"licenseListVersion": "3.26"
},
"name": "imx-atf-LF_6.18.2_1.0.0",
"dataLicense": "CC0-1.0",
"documentNamespace": "https://nxp.com/spdx/533dd8b7-0ff3-4d5d-821a-f98747c8a966",
"packages": [
{
"SPDXID": "SPDXRef-package-533dd8b7-0ff3-4d5d-821a-f98747c8a966",
"name": "imx-atf",
"versionInfo": "LF_6.18.2_1.0.0",
"licenseConcluded": "(BSD-3-Clause)",
"licenseDeclared": "(BSD-3-Clause)",
"downloadLocation": "https://github.com/nxp-imx/imx-atf -b lf-6.18.2-1.0.0",
"originator": "Organization: NXP",
"supplier": "NOASSERTION",
"externalRefs": [],
"filesAnalyzed": false
},
{
"SPDXID": "SPDXRef-package-103a6b4f-8a81-4816-9cbb-dea11270f99c",
"name": "arm-trusted-firmware",
"versionInfo": "v2.12.0",
"licenseConcluded": "BSD-3-Clause",
"licenseDeclared": "BSD-3-Clause",
"homepage": "https://github.com/ARM-software/arm-trusted-firmware",
"downloadLocation": "NOASSERTION",
"originator": "Organization: arm-software",
"supplier": "NOASSERTION",
"externalRefs": [
{
"referenceCategory": "OTHER",
"referenceLocator": "9d6aa262-5f01-46cb-b1e3-d7e7008d0193",
"referenceType": "BlackDuck-ComponentOrigin"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:arm:arm_trusted_firmware:2.12.0:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:arm:arm_trusted_firmware:2.12:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:arm:trusted_firmware-a:2.12.0:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:arm:trusted_firmware-a:2.12:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:o:arm:arm-trusted-firmware:2.12.0:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "PACKAGE-MANAGER",
"referenceLocator": "pkg:github/ARM-software/arm-trusted-firmware@v2.12.0",
"referenceType": "purl"
}
],
"filesAnalyzed": false
},
{
"SPDXID": "SPDXRef-package-8a06482c-8810-4d2b-8883-13fb809d6045",
"name": "zlib",
"versionInfo": "v1.3.1",
"licenseConcluded": "Zlib",
"licenseDeclared": "Zlib",
"homepage": "http://www.zlib.net/",
"downloadLocation": "NOASSERTION",
"originator": "Organization: zlib",
"supplier": "NOASSERTION",
"externalRefs": [
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:almalinux_package:mingw32-zlib-static:1.3.1:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:almalinux_package:mingw32-zlib:1.3.1:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:almalinux_package:mingw64-zlib-static:1.3.1:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:almalinux_package:mingw64-zlib:1.3.1:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
},
{
"referenceCategory": "SECURITY",
"referenceLocator": "cpe:2.3:a:gnu:zlib:1.3.1:*:*:*:*:*:*:*",
"referenceType": "cpe23Type"
}
],
"filesAnalyzed": false
}
],
"relationships": [
{
"spdxElementId": "SPDXRef-DOCUMENT",
"relationshipType": "DESCRIBES",
"relatedSpdxElement": "SPDXRef-package-533dd8b7-0ff3-4d5d-821a-f98747c8a966"
},
{
"spdxElementId": "SPDXRef-package-533dd8b7-0ff3-4d5d-821a-f98747c8a966",
"relationshipType": "CONTAINS",
"relatedSpdxElement": "SPDXRef-package-103a6b4f-8a81-4816-9cbb-dea11270f99c"
},
{
"spdxElementId": "SPDXRef-package-533dd8b7-0ff3-4d5d-821a-f98747c8a966",
"relationshipType": "CONTAINS",
"relatedSpdxElement": "SPDXRef-package-8a06482c-8810-4d2b-8883-13fb809d6045"
}
]
}