{
  "SPDXID": "SPDXRef-DOCUMENT",
  "name": "clevis-0.18-2.oe2403.aarch64.rpm",
  "spdxVersion": "SPDX-2.2",
  "creationInfo": {
    "created": "2026-05-15T06:57:53.750891916Z",
    "creators": [
      "openeuler_creator"
    ]
  },
  "dataLicense": "CC0-1.0",
  "documentNamespace": "https://sbom.openEuler.org/clevis-0.18-2.oe2403.aarch64.rpm",
  "packages": [
    {
      "SPDXID": "SPDXRef-rpm-bash-5.2.15",
      "name": "bash",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "7efac69f54416b21bdc1d052bee86bc9193d2889fb299a5c97224fe4ba7ccf7a"
        }
      ],
      "description": "Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/bash@5.2.15-9.oe2403?arch=x86_64&epoch=0&upstream=bash-5.2.15-9.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/bash",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "It is the Bourne Again Shell",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.2.15-9.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-compat-openssl11-libs-1.1.1m",
      "name": "compat-openssl11-libs",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "1be4a859ee3b40781dc54b13624d083562ba7afe7043e6aa9fcf323f187e854f"
        }
      ],
      "description": "The openssl-libs package contains the libraries that are used\nby various applications which support cryptographic algorithms\nand protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/compat-openssl11-libs@1.1.1m-10.oe2403?arch=x86_64&epoch=1&upstream=compat-openssl11-1.1.1m-10.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.openssl.org/",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "A general purpose cryptography library with TLS implementation",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "1:1.1.1m-10.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-coreutils-9.4",
      "name": "coreutils",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "9a93e8ae2c255bbb13eaa3b57ea17ef5f753be5cf64b617630d2b07edce125d8"
        }
      ],
      "description": "These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/coreutils@9.4-3.oe2403?arch=x86_64&epoch=0&upstream=coreutils-9.4-3.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/coreutils/",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "A set of basic GNU tools commonly used in shell scripts",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9.4-3.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-cryptsetup-2.6.1",
      "name": "cryptsetup",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "9cad8680dbffa53b4b71dbb76c2e18eda3f0c24c8f155f8b07228bccee1cf3ff"
        }
      ],
      "description": "cryptsetup is a utility used to conveniently set up disk encryption based\non the DMCrypt kernel module.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/cryptsetup@2.6.1-1.oe2403?arch=x86_64&epoch=0&upstream=cryptsetup-2.6.1-1.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://gitlab.com/cryptsetup/cryptsetup",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "Utility used to conveniently set up disk encryption",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.6.1-1.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-curl-8.4.0",
      "name": "curl",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "8cc763dcebaea88ed4763441b7ac8c434af7f861201b21a36347390e8c9900ae"
        }
      ],
      "description": "cURL is a computer software project providing a library (libcurl) and\ncommand-line tool (curl) for transferring data using various protocols.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/curl@8.4.0-3.oe2403?arch=x86_64&epoch=0&upstream=curl-8.4.0-3.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://curl.se/",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "Curl is used in command lines or scripts to transfer data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:8.4.0-3.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-glibc-2.38",
      "name": "glibc",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "1da3351aa7403c603949d381b7c30ea80598cb9cdf9ae0206816118e9b566939"
        }
      ],
      "description": "The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/glibc@2.38-29.oe2403?arch=x86_64&epoch=0&upstream=glibc-2.38-29.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.gnu.org/software/glibc/",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "The GNU libc libraries",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.38-29.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-jansson-2.14",
      "name": "jansson",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "1525b4b837ed257878eeff4847ca2fe32a4bec54ae7d309423b384617cf6b0be"
        }
      ],
      "description": "Jansson is a C library for encoding, decoding and manipulating JSON data.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jansson@2.14-3.oe2403?arch=x86_64&epoch=0&upstream=jansson-2.14-3.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.digip.org/jansson/",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "A C library for encoding, decoding and manipulating JSON data",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.14-3.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-jose-11",
      "name": "jose",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "c376e07a57d36881dd4a82385f87bb290a4edf5655d29c2127e559a463286b41"
        }
      ],
      "description": "José is a C-language implementation of the Javascript Object\nSigning and Encryption standards. José provides a command-line\nutility which encompasses most of the JOSE features. This allows\nfor easy integration into your project and one-off scripts.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/jose@11-2.oe2403?arch=x86_64&epoch=0&upstream=jose-11-2.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/jose",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "José is a command line utility for performing various tasks on JSON  objects",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:11-2.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-luksmeta-9",
      "name": "luksmeta",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "959b2c8853680f5c46540f021eb23a73921a64a6679c4345b8484ef87f882f8e"
        }
      ],
      "description": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header. Some projects need\nto store additional metadata about a LUKS volume that is accessable before unlocking it.\nFortunately, there is a gap in the LUKS header between the end of the slot area and the\npayload offset, LUKSMeta uses this hole to store additional metadata.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/luksmeta@9-5.oe2403?arch=x86_64&epoch=0&upstream=luksmeta-9-5.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/latchset/luksmeta",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "LUKSMeta is a simple library for storing metadata in the LUKSv1 header",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9-5.oe2403"
    },
    {
      "SPDXID": "SPDXRef-rpm-tpm2-tools-5.5",
      "name": "tpm2-tools",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "cc50ab79c3c491a9d807e4c971581ec9680e961b8bb6ed86d8170e145cccbbdb"
        }
      ],
      "description": "The package contains the code for the TPM (Trusted Platform Module) 2.0\ntools based on tpm2-tss.\n\nThe tpm2-tools projects aims to deliver both low-level and aggregate\ncommand line tools that provide access to a tpm2.0 compatible device.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/tpm2-tools@5.5-2.oe2403?arch=x86_64&epoch=0&upstream=tpm2-tools-5.5-2.oe2403.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://github.com/tpm2-software/tpm2-tools",
      "sourceInfo": "acquired package info from repodata DB: repodata/87ee4e92c1e5173adb9dd158ec9c2e7bd500bbe68c80fdd1cfc6721bbb15534f-primary.sqlite.bz2",
      "summary": "A TPM2.0 testing tool based on TPM2.0-TSS",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.5-2.oe2403"
    }
  ],
  "relationships": [
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-bash-5.2.15"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-compat-openssl11-libs-1.1.1m"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-coreutils-9.4"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-cryptsetup-2.6.1"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-curl-8.4.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-glibc-2.38"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jansson-2.14"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-jose-11"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-luksmeta-9"
    },
    {
      "spdxElementId": "SPDXRef-rpm-clevis-18",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-tpm2-tools-5.5"
    }
  ]
}
