Skip to content

Commit ed49bc2

Browse files
authored
chore: update SBOM for Python 3.11
1 parent 56fc482 commit ed49bc2

File tree

2 files changed

+141
-97
lines changed

2 files changed

+141
-97
lines changed

sbom/cve-bin-tool-py3.11.json

Lines changed: 78 additions & 50 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.5.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.5",
5-
"serialNumber": "urn:uuid:2b9efe81-5eb6-4224-aacf-b2ef39f39d94",
5+
"serialNumber": "urn:uuid:d207333a-18dd-4549-9979-6b7f093bf0f4",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2023-10-09T00:25:44Z",
8+
"timestamp": "2023-10-16T00:26:13Z",
99
"tools": {
1010
"components": [
1111
{
@@ -1228,7 +1228,7 @@
12281228
"type": "library",
12291229
"bom-ref": "37-google-auth",
12301230
"name": "google-auth",
1231-
"version": "2.23.2",
1231+
"version": "2.23.3",
12321232
"supplier": {
12331233
"name": "Google Cloud Platform",
12341234
"contact": [
@@ -1237,7 +1237,7 @@
12371237
}
12381238
]
12391239
},
1240-
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.23.2:*:*:*:*:*:*:*",
1240+
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.23.3:*:*:*:*:*:*:*",
12411241
"description": "Google Authentication Library",
12421242
"licenses": [
12431243
{
@@ -1249,12 +1249,12 @@
12491249
],
12501250
"externalReferences": [
12511251
{
1252-
"url": "https://pypi.org/project/google-auth/2.23.2",
1252+
"url": "https://pypi.org/project/google-auth/2.23.3",
12531253
"type": "distribution",
12541254
"comment": "Download location for component"
12551255
}
12561256
],
1257-
"purl": "pkg:pypi/google-auth@2.23.2",
1257+
"purl": "pkg:pypi/google-auth@2.23.3",
12581258
"properties": [
12591259
{
12601260
"name": "License Comments",
@@ -1476,11 +1476,11 @@
14761476
"type": "library",
14771477
"bom-ref": "45-rpds-py",
14781478
"name": "rpds-py",
1479-
"version": "0.10.4",
1479+
"version": "0.10.6",
14801480
"supplier": {
14811481
"name": "Julian Berman"
14821482
},
1483-
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.10.4:*:*:*:*:*:*:*",
1483+
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.10.6:*:*:*:*:*:*:*",
14841484
"description": "Python bindings to Rust's persistent data structures (rpds)",
14851485
"licenses": [
14861486
{
@@ -1492,12 +1492,12 @@
14921492
],
14931493
"externalReferences": [
14941494
{
1495-
"url": "https://pypi.org/project/rpds-py/0.10.4",
1495+
"url": "https://pypi.org/project/rpds-py/0.10.6",
14961496
"type": "distribution",
14971497
"comment": "Download location for component"
14981498
}
14991499
],
1500-
"purl": "pkg:pypi/rpds-py@0.10.4"
1500+
"purl": "pkg:pypi/rpds-py@0.10.6"
15011501
},
15021502
{
15031503
"type": "library",
@@ -1603,7 +1603,34 @@
16031603
},
16041604
{
16051605
"type": "library",
1606-
"bom-ref": "49-packaging",
1606+
"bom-ref": "49-packageurl-python",
1607+
"name": "packageurl-python",
1608+
"version": "0.11.2",
1609+
"supplier": {
1610+
"name": "the purl authors"
1611+
},
1612+
"cpe": "cpe:2.3:a:the_purl_authors:packageurl-python:0.11.2:*:*:*:*:*:*:*",
1613+
"description": "A purl aka. Package URL parser and builder",
1614+
"licenses": [
1615+
{
1616+
"license": {
1617+
"id": "MIT",
1618+
"url": "https://opensource.org/licenses/MIT"
1619+
}
1620+
}
1621+
],
1622+
"externalReferences": [
1623+
{
1624+
"url": "https://pypi.org/project/packageurl-python/0.11.2",
1625+
"type": "distribution",
1626+
"comment": "Download location for component"
1627+
}
1628+
],
1629+
"purl": "pkg:pypi/packageurl-python@0.11.2"
1630+
},
1631+
{
1632+
"type": "library",
1633+
"bom-ref": "50-packaging",
16071634
"name": "packaging",
16081635
"version": "21.3",
16091636
"supplier": {
@@ -1638,7 +1665,7 @@
16381665
},
16391666
{
16401667
"type": "library",
1641-
"bom-ref": "50-plotly",
1668+
"bom-ref": "51-plotly",
16421669
"name": "plotly",
16431670
"version": "5.17.0",
16441671
"supplier": {
@@ -1670,7 +1697,7 @@
16701697
},
16711698
{
16721699
"type": "library",
1673-
"bom-ref": "51-tenacity",
1700+
"bom-ref": "52-tenacity",
16741701
"name": "tenacity",
16751702
"version": "8.2.3",
16761703
"supplier": {
@@ -1708,7 +1735,7 @@
17081735
},
17091736
{
17101737
"type": "library",
1711-
"bom-ref": "52-python-gnupg",
1738+
"bom-ref": "53-python-gnupg",
17121739
"name": "python-gnupg",
17131740
"version": "0.5.1",
17141741
"supplier": {
@@ -1746,7 +1773,7 @@
17461773
},
17471774
{
17481775
"type": "library",
1749-
"bom-ref": "53-requests",
1776+
"bom-ref": "54-requests",
17501777
"name": "requests",
17511778
"version": "2.31.0",
17521779
"supplier": {
@@ -1784,7 +1811,7 @@
17841811
},
17851812
{
17861813
"type": "library",
1787-
"bom-ref": "54-certifi",
1814+
"bom-ref": "55-certifi",
17881815
"name": "certifi",
17891816
"version": "2023.7.22",
17901817
"supplier": {
@@ -1816,7 +1843,7 @@
18161843
},
18171844
{
18181845
"type": "library",
1819-
"bom-ref": "55-urllib3",
1846+
"bom-ref": "56-urllib3",
18201847
"name": "urllib3",
18211848
"version": "2.0.6",
18221849
"supplier": {
@@ -1840,7 +1867,7 @@
18401867
},
18411868
{
18421869
"type": "library",
1843-
"bom-ref": "56-rich",
1870+
"bom-ref": "57-rich",
18441871
"name": "rich",
18451872
"version": "13.6.0",
18461873
"supplier": {
@@ -1872,7 +1899,7 @@
18721899
},
18731900
{
18741901
"type": "library",
1875-
"bom-ref": "57-markdown-it-py",
1902+
"bom-ref": "58-markdown-it-py",
18761903
"name": "markdown-it-py",
18771904
"version": "3.0.0",
18781905
"supplier": {
@@ -1896,7 +1923,7 @@
18961923
},
18971924
{
18981925
"type": "library",
1899-
"bom-ref": "58-mdurl",
1926+
"bom-ref": "59-mdurl",
19001927
"name": "mdurl",
19011928
"version": "0.1.2",
19021929
"supplier": {
@@ -1920,7 +1947,7 @@
19201947
},
19211948
{
19221949
"type": "library",
1923-
"bom-ref": "59-pygments",
1950+
"bom-ref": "60-pygments",
19241951
"name": "pygments",
19251952
"version": "2.16.1",
19261953
"supplier": {
@@ -1952,7 +1979,7 @@
19521979
},
19531980
{
19541981
"type": "library",
1955-
"bom-ref": "60-rpmfile",
1982+
"bom-ref": "61-rpmfile",
19561983
"name": "rpmfile",
19571984
"version": "1.1.1",
19581985
"supplier": {
@@ -1984,7 +2011,7 @@
19842011
},
19852012
{
19862013
"type": "library",
1987-
"bom-ref": "61-toml",
2014+
"bom-ref": "62-toml",
19882015
"name": "toml",
19892016
"version": "0.10.2",
19902017
"supplier": {
@@ -2016,7 +2043,7 @@
20162043
},
20172044
{
20182045
"type": "library",
2019-
"bom-ref": "62-xmlschema",
2046+
"bom-ref": "63-xmlschema",
20202047
"name": "xmlschema",
20212048
"version": "2.5.0",
20222049
"supplier": {
@@ -2048,7 +2075,7 @@
20482075
},
20492076
{
20502077
"type": "library",
2051-
"bom-ref": "63-elementpath",
2078+
"bom-ref": "64-elementpath",
20522079
"name": "elementpath",
20532080
"version": "4.1.5",
20542081
"supplier": {
@@ -2080,7 +2107,7 @@
20802107
},
20812108
{
20822109
"type": "library",
2083-
"bom-ref": "64-zstandard",
2110+
"bom-ref": "65-zstandard",
20842111
"name": "zstandard",
20852112
"version": "0.21.0",
20862113
"supplier": {
@@ -2130,17 +2157,18 @@
21302157
"40-jinja2",
21312158
"42-jsonschema",
21322159
"46-lib4sbom",
2133-
"49-packaging",
2134-
"50-plotly",
2135-
"52-python-gnupg",
2160+
"49-packageurl-python",
2161+
"50-packaging",
2162+
"51-plotly",
2163+
"53-python-gnupg",
21362164
"47-pyyaml",
2137-
"53-requests",
2138-
"56-rich",
2139-
"60-rpmfile",
2140-
"61-toml",
2141-
"55-urllib3",
2142-
"62-xmlschema",
2143-
"64-zstandard"
2165+
"54-requests",
2166+
"57-rich",
2167+
"61-rpmfile",
2168+
"62-toml",
2169+
"56-urllib3",
2170+
"63-xmlschema",
2171+
"65-zstandard"
21442172
]
21452173
},
21462174
{
@@ -2316,44 +2344,44 @@
23162344
]
23172345
},
23182346
{
2319-
"ref": "49-packaging",
2347+
"ref": "50-packaging",
23202348
"dependsOn": [
23212349
"26-pyparsing"
23222350
]
23232351
},
23242352
{
2325-
"ref": "50-plotly",
2353+
"ref": "51-plotly",
23262354
"dependsOn": [
2327-
"49-packaging",
2328-
"51-tenacity"
2355+
"50-packaging",
2356+
"52-tenacity"
23292357
]
23302358
},
23312359
{
2332-
"ref": "53-requests",
2360+
"ref": "54-requests",
23332361
"dependsOn": [
2334-
"54-certifi",
2362+
"55-certifi",
23352363
"7-charset-normalizer",
23362364
"10-idna",
2337-
"55-urllib3"
2365+
"56-urllib3"
23382366
]
23392367
},
23402368
{
2341-
"ref": "56-rich",
2369+
"ref": "57-rich",
23422370
"dependsOn": [
2343-
"57-markdown-it-py",
2344-
"59-pygments"
2371+
"58-markdown-it-py",
2372+
"60-pygments"
23452373
]
23462374
},
23472375
{
2348-
"ref": "57-markdown-it-py",
2376+
"ref": "58-markdown-it-py",
23492377
"dependsOn": [
2350-
"58-mdurl"
2378+
"59-mdurl"
23512379
]
23522380
},
23532381
{
2354-
"ref": "62-xmlschema",
2382+
"ref": "63-xmlschema",
23552383
"dependsOn": [
2356-
"63-elementpath"
2384+
"64-elementpath"
23572385
]
23582386
}
23592387
]

0 commit comments

Comments
 (0)