{
  "SPDXID": "SPDXRef-DOCUMENT",
  "name": "clevis-0.21-1.oe2403sp3.aarch64.rpm",
  "spdxVersion": "SPDX-2.2",
  "creationInfo": {
    "created": "2026-05-14T09:44:25.182336603Z",
    "creators": [
      "openeuler_creator"
    ]
  },
  "dataLicense": "CC0-1.0",
  "documentNamespace": "https://sbom.openEuler.org/clevis-0.21-1.oe2403sp3.aarch64.rpm",
  "packages": [
    {
      "SPDXID": "SPDXRef-rpm-bash-5.2.15",
      "name": "bash",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "f5f05f0e950d719fe668decdcbb64bc5d2065cb0b7b4b0614bea372e8ceb17a7"
        }
      ],
      "description": "Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/bash@5.2.15-19.oe2403sp3?arch=aarch64&epoch=0&upstream=bash-5.2.15-19.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/bash",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "It is the Bourne Again Shell",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.2.15-19.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-coreutils-9.4",
      "name": "coreutils",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "73adf7354f418a6c34a5b2906ec5ed891b3f962789c6cedefb21750be2f32f87"
        }
      ],
      "description": "These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/coreutils@9.4-21.oe2403sp3?arch=aarch64&epoch=0&upstream=coreutils-9.4-21.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/coreutils/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "A set of basic GNU tools commonly used in shell scripts",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9.4-21.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-cryptsetup-2.6.1",
      "name": "cryptsetup",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "b951547d74f179e2a3c2dbfe83fa16813ce6d4a5be6191157830ce4709c22df0"
        }
      ],
      "description": "cryptsetup is a utility used to conveniently set up disk encryption based\non the DMCrypt kernel module.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/cryptsetup@2.6.1-2.oe2403sp3?arch=aarch64&epoch=0&upstream=cryptsetup-2.6.1-2.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://gitlab.com/cryptsetup/cryptsetup",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "Utility used to conveniently set up disk encryption",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.6.1-2.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-curl-8.4.0",
      "name": "curl",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "2bbb9e2c325aa1182b2e3e3d780b0ab916321426fc564ee00ff9bd0c23a82c09"
        }
      ],
      "description": "cURL is a computer software project providing a library (libcurl) and\ncommand-line tool (curl) for transferring data using various protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/curl@8.4.0-24.oe2403sp3?arch=aarch64&epoch=0&upstream=curl-8.4.0-24.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://curl.se/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "Curl is used in command lines or scripts to transfer data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:8.4.0-24.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-glibc-2.38",
      "name": "glibc",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "661ba227187dd665e3b26ae70ce2e8d6eddf226ffc44a9b915f51272b92c865a"
        }
      ],
      "description": "The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/glibc@2.38-84.oe2403sp3?arch=aarch64&epoch=0&upstream=glibc-2.38-84.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.gnu.org/software/glibc/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "The GNU libc libraries",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.38-84.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-jansson-2.14",
      "name": "jansson",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "b9862cedae38b1e0cc694248ddece2b4a022c135b4f4499fe555a87850aa3f89"
        }
      ],
      "description": "Jansson is a C library for encoding, decoding and manipulating JSON data.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jansson@2.14-4.oe2403sp3?arch=aarch64&epoch=0&upstream=jansson-2.14-4.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.digip.org/jansson/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "A C library for encoding, decoding and manipulating JSON data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.14-4.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-jose-14",
      "name": "jose",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "20758c18d7863228507d5e55a0fbf84f447a079ea70250776486c819b0631263"
        }
      ],
      "description": "José is a C-language implementation of the Javascript Object\nSigning and Encryption standards. José provides a command-line\nutility which encompasses most of the JOSE features. This allows\nfor easy integration into your project and one-off scripts.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jose@14-1.oe2403sp3?arch=aarch64&epoch=0&upstream=jose-14-1.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/jose",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "José is a command line utility for performing various tasks on JSON  objects",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:14-1.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-luksmeta-9",
      "name": "luksmeta",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "643c26e7048d6860db1835120082c1b0d565f147fe6aaa7696ab2b9b0fc706a8"
        }
      ],
      "description": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header. Some projects need\nto store additional metadata about a LUKS volume that is accessable before unlocking it.\nFortunately, there is a gap in the LUKS header between the end of the slot area and the\npayload offset, LUKSMeta uses this hole to store additional metadata.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/luksmeta@9-7.oe2403sp3?arch=aarch64&epoch=0&upstream=luksmeta-9-7.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/luksmeta",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9-7.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-openssl-libs-3.0.12",
      "name": "openssl-libs",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "2ea579aa975f3383a42154a17713739d987a60985ccb1f348a0b14aaca9a02fe"
        }
      ],
      "description": "The openssl-libs package contains the libraries that are used\nby various applications which support cryptographic algorithms\nand protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/openssl-libs@3.0.12-31.oe2403sp3?arch=aarch64&epoch=1&upstream=openssl-3.0.12-31.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.openssl.org/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "A general purpose cryptography library with TLS implementation",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "1:3.0.12-31.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-shadow-4.14.3",
      "name": "shadow",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "91018919b9fd10599565fc1f5e77bdef9b957a4df38e88ab8a93f98c2b14f651"
        }
      ],
      "description": "This package includes the necessary programs for converting plain\npassword files to the shadow password format and to manage user and\ngroup accounts.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/shadow@4.14.3-8.oe2403sp3?arch=aarch64&epoch=2&upstream=shadow-4.14.3-8.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://pkg-shadow.alioth.debian.org/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "Tools for managing accounts and shadow password files",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "2:4.14.3-8.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-tpm2-tools-5.5",
      "name": "tpm2-tools",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "1fb80ce95940c1cace1f46f8db2ea3f8ce9dda8bbc3bb59fd165d1e30c8c0564"
        }
      ],
      "description": "The package contains the code for the TPM (Trusted Platform Module) 2.0\ntools based on tpm2-tss.\n\nThe tpm2-tools projects aims to deliver both low-level and aggregate\ncommand line tools that provide access to a tpm2.0 compatible device.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/tpm2-tools@5.5-4.oe2403sp3?arch=aarch64&epoch=0&upstream=tpm2-tools-5.5-4.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/tpm2-software/tpm2-tools",
      "sourceInfo": "acquired package info from repodata DB: repodata/1237fc88d0e4da3b551ae22f7823fbad70d531e5e3e6588f120954709a623b3c-primary.sqlite.bz2",
      "summary": "A TPM2.0 testing tool based on TPM2.0-TSS",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.5-4.oe2403sp3"
    }
  ],
  "relationships": [
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-bash-5.2.15"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-coreutils-9.4"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-cryptsetup-2.6.1"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-curl-8.4.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-glibc-2.38"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jansson-2.14"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jose-14"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-luksmeta-9"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-openssl-libs-3.0.12"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-shadow-4.14.3"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-tpm2-tools-5.5"
    }
  ]
}
