{
  "SPDXID": "SPDXRef-DOCUMENT",
  "name": "clevis-0.21-1.oe2403sp3.aarch64.rpm",
  "spdxVersion": "SPDX-2.2",
  "creationInfo": {
    "created": "2026-05-14T13:11:03.911431983Z",
    "creators": [
      "openeuler_creator"
    ]
  },
  "dataLicense": "CC0-1.0",
  "documentNamespace": "https://sbom.openEuler.org/clevis-0.21-1.oe2403sp3.aarch64.rpm",
  "packages": [
    {
      "SPDXID": "SPDXRef-rpm-bash-5.2.15",
      "name": "bash",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "01c0bf4fe976cb0934e35b9548ff7aa66e95561f0f20006203c90a5fa638bf8c"
        }
      ],
      "description": "Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/bash@5.2.15-19.oe2403sp3?arch=x86_64&epoch=0&upstream=bash-5.2.15-19.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/bash",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "It is the Bourne Again Shell",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.2.15-19.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-coreutils-9.4",
      "name": "coreutils",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "eea6c6456947e2e0bb05eb3e4971a5c099bf6275860c55b4b142773426289226"
        }
      ],
      "description": "These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/coreutils@9.4-21.oe2403sp3?arch=x86_64&epoch=0&upstream=coreutils-9.4-21.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/coreutils/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "A set of basic GNU tools commonly used in shell scripts",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9.4-21.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-cryptsetup-2.6.1",
      "name": "cryptsetup",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "4a6fad97080047ad4bac248d95a6748ff50fd9c78943ebdae7ac5d57f31516db"
        }
      ],
      "description": "cryptsetup is a utility used to conveniently set up disk encryption based\non the DMCrypt kernel module.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/cryptsetup@2.6.1-2.oe2403sp3?arch=x86_64&epoch=0&upstream=cryptsetup-2.6.1-2.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://gitlab.com/cryptsetup/cryptsetup",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "Utility used to conveniently set up disk encryption",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.6.1-2.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-curl-8.4.0",
      "name": "curl",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "e2eee2592c5e1d55574c861416e66b9cb8ca3775badbba3c3c5de65921c8069d"
        }
      ],
      "description": "cURL is a computer software project providing a library (libcurl) and\ncommand-line tool (curl) for transferring data using various protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/curl@8.4.0-24.oe2403sp3?arch=x86_64&epoch=0&upstream=curl-8.4.0-24.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://curl.se/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "Curl is used in command lines or scripts to transfer data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:8.4.0-24.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-glibc-2.38",
      "name": "glibc",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "1b4a0eea44d2c57bfc947bfe674b6597a851b4d105ef081ab3776cc952d87e8b"
        }
      ],
      "description": "The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/glibc@2.38-84.oe2403sp3?arch=x86_64&epoch=0&upstream=glibc-2.38-84.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.gnu.org/software/glibc/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "The GNU libc libraries",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.38-84.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-jansson-2.14",
      "name": "jansson",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "9546080b8542a94e29abfd044d00a10339500a725346447ea6185176a09b936e"
        }
      ],
      "description": "Jansson is a C library for encoding, decoding and manipulating JSON data.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jansson@2.14-4.oe2403sp3?arch=x86_64&epoch=0&upstream=jansson-2.14-4.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.digip.org/jansson/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "A C library for encoding, decoding and manipulating JSON data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.14-4.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-jose-14",
      "name": "jose",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "e0464fa3841833d79dbe5f115493c303134a47a8b5b088d60bf5377aadd1fd56"
        }
      ],
      "description": "José is a C-language implementation of the Javascript Object\nSigning and Encryption standards. José provides a command-line\nutility which encompasses most of the JOSE features. This allows\nfor easy integration into your project and one-off scripts.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jose@14-1.oe2403sp3?arch=x86_64&epoch=0&upstream=jose-14-1.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/jose",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "José is a command line utility for performing various tasks on JSON  objects",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:14-1.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-luksmeta-9",
      "name": "luksmeta",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "f1ea1702442b3db7c1e3bda8ffb968bdb32ed8da39bd935377ebd28c6e36b5ed"
        }
      ],
      "description": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header. Some projects need\nto store additional metadata about a LUKS volume that is accessable before unlocking it.\nFortunately, there is a gap in the LUKS header between the end of the slot area and the\npayload offset, LUKSMeta uses this hole to store additional metadata.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/luksmeta@9-7.oe2403sp3?arch=x86_64&epoch=0&upstream=luksmeta-9-7.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/luksmeta",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9-7.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-openssl-libs-3.0.12",
      "name": "openssl-libs",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "4ba580879e096eaddc9e183dec48ed8756a30f142bcc94942658fef42be72f89"
        }
      ],
      "description": "The openssl-libs package contains the libraries that are used\nby various applications which support cryptographic algorithms\nand protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/openssl-libs@3.0.12-31.oe2403sp3?arch=x86_64&epoch=1&upstream=openssl-3.0.12-31.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.openssl.org/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "A general purpose cryptography library with TLS implementation",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "1:3.0.12-31.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-shadow-4.14.3",
      "name": "shadow",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "176d3027ca07f898349f135037bdfb25cce89ddebb00813e1a594176accaa0e7"
        }
      ],
      "description": "This package includes the necessary programs for converting plain\npassword files to the shadow password format and to manage user and\ngroup accounts.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/shadow@4.14.3-8.oe2403sp3?arch=x86_64&epoch=2&upstream=shadow-4.14.3-8.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://pkg-shadow.alioth.debian.org/",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "Tools for managing accounts and shadow password files",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "2:4.14.3-8.oe2403sp3"
    },
    {
      "SPDXID": "SPDXRef-rpm-tpm2-tools-5.5",
      "name": "tpm2-tools",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "f991d2b2b537edfd3076fdfbb26a7054b9d81e06138d1d27b6aa28bf773ec010"
        }
      ],
      "description": "The package contains the code for the TPM (Trusted Platform Module) 2.0\ntools based on tpm2-tss.\n\nThe tpm2-tools projects aims to deliver both low-level and aggregate\ncommand line tools that provide access to a tpm2.0 compatible device.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/tpm2-tools@5.5-4.oe2403sp3?arch=x86_64&epoch=0&upstream=tpm2-tools-5.5-4.oe2403sp3.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/tpm2-software/tpm2-tools",
      "sourceInfo": "acquired package info from repodata DB: repodata/1884cb0675d766cb1ea3a90cf36ea6d3dfc5e5497f6f1351d21c61704c368e98-primary.sqlite.bz2",
      "summary": "A TPM2.0 testing tool based on TPM2.0-TSS",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.5-4.oe2403sp3"
    }
  ],
  "relationships": [
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-bash-5.2.15"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-coreutils-9.4"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-cryptsetup-2.6.1"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-curl-8.4.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-glibc-2.38"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jansson-2.14"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jose-14"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-luksmeta-9"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-openssl-libs-3.0.12"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-shadow-4.14.3"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-21",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-tpm2-tools-5.5"
    }
  ]
}
