{
  "SPDXID": "SPDXRef-DOCUMENT",
  "name": "nss-0.3.94.0-9.oe2403sp4.aarch64.rpm",
  "spdxVersion": "SPDX-2.2",
  "creationInfo": {
    "created": "2026-07-04T02:24:06.585354077Z",
    "creators": [
      "openeuler_creator"
    ]
  },
  "dataLicense": "CC0-1.0",
  "documentNamespace": "https://sbom.openEuler.org/nss-0.3.94.0-9.oe2403sp4.aarch64.rpm",
  "packages": [
    {
      "SPDXID": "SPDXRef-rpm-nss-3.94.0",
      "name": "nss",
      "licenseConcluded": "MPLv2.0",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "d97ba81a22cd03ecc9a0f050881715c0c4f5b8d5e41bb1d9150110969f895b6c"
        }
      ],
      "description": "Network Security Services (NSS) is a set of libraries designed to\nsupport cross-platform development of security-enabled client and\nserver applications. Applications built with NSS can support SSL v2\nand v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509\nv3 certificates, and other security standards.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/nss@3.94.0-9.oe2403sp4?arch=x86_64&epoch=0&upstream=nss-3.94.0-9.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.mozilla.org/projects/security/pki/nss/",
      "licenseDeclared": "MPLv2.0",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Network Security Services",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:3.94.0-9.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-bash-5.2.15",
      "name": "bash",
      "licenseConcluded": "GPLv3",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "a980f85dfb01951730f94f5537d836d925d5e23cafc786f2e63f0087f69e1d93"
        }
      ],
      "description": "Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/bash@5.2.15-19.oe2403sp4?arch=x86_64&epoch=0&upstream=bash-5.2.15-19.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/bash",
      "licenseDeclared": "GPLv3",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "It is the Bourne Again Shell",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:5.2.15-19.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-coreutils-9.4",
      "name": "coreutils",
      "licenseConcluded": "GPLv3+",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "433e473f0f3e48029a50a63e45680e5ae03a29789cc26d8952d691ea388b3b62"
        }
      ],
      "description": "These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/coreutils@9.4-22.oe2403sp4?arch=x86_64&epoch=0&upstream=coreutils-9.4-22.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/coreutils/",
      "licenseDeclared": "GPLv3+",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "A set of basic GNU tools commonly used in shell scripts",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:9.4-22.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-crypto-policies-20230614",
      "name": "crypto-policies",
      "licenseConcluded": "LGPLv2+",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "26d67257e5779af2e41ca0c42a5cb3fba7dab84e03ef8b08b6d8f986044d9435"
        }
      ],
      "description": "This package provides update-crypto-policies, which is a tool that sets\nthe policy applicable for the various cryptographic back-ends, such as\nSSL/TLS libraries. The policy set by the tool will be the default policy\nused by these back-ends unless the application user configures them otherwise.\nhttps://fedoraproject.org/wiki/Changes/CryptoPolicy",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/crypto-policies@20230614-4.git5f3458e.oe2403sp4?arch=noarch&epoch=0&upstream=crypto-policies-20230614-4.git5f3458e.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://gitlab.com/redhat-crypto/fedora-crypto-policies",
      "licenseDeclared": "LGPLv2+",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Crypto policies package for Fedora",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:20230614-4.git5f3458e.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-crypto-policies-scripts-20230614",
      "name": "crypto-policies-scripts",
      "licenseConcluded": "LGPLv2+",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "336ccfbbe010debc879bbe3f9f756f56c1c8e904c3d5073e58c3086f58534480"
        }
      ],
      "description": "This package provides a tool update-crypto-policies, which applies\nthe policies provided by the crypto-policies package. These can be\neither the pre-built policies from the base package or custom policies\ndefined in simple policy definition files.\n\nThe package also provides a tool fips-mode-setup, which can be used\nto enable or disable the system FIPS mode.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/crypto-policies-scripts@20230614-4.git5f3458e.oe2403sp4?arch=noarch&epoch=0&upstream=crypto-policies-20230614-4.git5f3458e.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://gitlab.com/redhat-crypto/fedora-crypto-policies",
      "licenseDeclared": "LGPLv2+",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Tool to switch between crypto policies",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:20230614-4.git5f3458e.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-glibc-2.38",
      "name": "glibc",
      "licenseConcluded": "LGPLv2+ and LGPLv2+ with exceptions and GPLv2+ and GPLv2+ with exceptions and BSD and Inner-Net-2.0 and ISC and Public Domain and GFDL-1.3-only",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "b136cc1d6c94e7df3b522b541c89c22084f0ce440f1b9714ed930f664b10ea04"
        }
      ],
      "description": "The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/glibc@2.38-107.oe2403sp4?arch=x86_64&epoch=0&upstream=glibc-2.38-107.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.gnu.org/software/glibc/",
      "licenseDeclared": "LGPLv2+ and LGPLv2+ with exceptions and GPLv2+ and GPLv2+ with exceptions and BSD and Inner-Net-2.0 and ISC and Public Domain and GFDL-1.3-only",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "The GNU libc libraries",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:2.38-107.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-nspr-4.35.0",
      "name": "nspr",
      "licenseConcluded": "MPLv2.0",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "12ba9a5754c102875cf3ddfecb76228962d21587f16157c0ea19611aeac6df31"
        }
      ],
      "description": "NetScape Portable Runtime (NSPR) provides platform independence for non-GUI\noperating system facilities. These facilities include threads, thread\nsynchronization, normal file and network I/O, interval timing and calendar\ntime, basic memory management (malloc and free) and shared library linking.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/nspr@4.35.0-5.oe2403sp4?arch=x86_64&epoch=0&upstream=nspr-4.35.0-5.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.mozilla.org/projects/nspr",
      "licenseDeclared": "MPLv2.0",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Netscape Portable Runtime",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:4.35.0-5.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-nss-softokn-3.94.0",
      "name": "nss-softokn",
      "licenseConcluded": "MPLv2.0",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "b118ffc6e085797ad04d84692c73b9fb44ca5c233d26b6a5cff35f9c518a523f"
        }
      ],
      "description": "Network Security Services Softoken and Freebl Cryptographic Module",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/nss-softokn@3.94.0-9.oe2403sp4?arch=x86_64&epoch=0&upstream=nss-3.94.0-9.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.mozilla.org/projects/security/pki/nss/",
      "licenseDeclared": "MPLv2.0",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Network Security Services Softoken and Freebl library Module",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:3.94.0-9.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-nss-util-3.94.0",
      "name": "nss-util",
      "licenseConcluded": "MPLv2.0",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "67b0a0e2ba5ca356e2231dc2b92a18dafe7f2ff1bf6fe7ff12e192f2f2483630"
        }
      ],
      "description": "Utilities for Network Security Services and the Softoken module\nmanipulate the NSS certificate and key database.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/nss-util@3.94.0-9.oe2403sp4?arch=x86_64&epoch=0&upstream=nss-3.94.0-9.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://www.mozilla.org/projects/security/pki/nss/",
      "licenseDeclared": "MPLv2.0",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Network Security Services Utilities Library",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:3.94.0-9.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-p11-kit-trust-0.25.0",
      "name": "p11-kit-trust",
      "licenseConcluded": "BSD",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "abb17dc9a8cefebcc8a8b6c9ec3af0a95e2ec92eb19d434a981ce86c0d1a027b"
        }
      ],
      "description": "This package contains PKCS#11 trust policy module.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/p11-kit-trust@0.25.0-2.oe2403sp4?arch=x86_64&epoch=0&upstream=p11-kit-0.25.0-2.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://p11-glue.freedesktop.org/p11-kit.html",
      "licenseDeclared": "BSD",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Trust policy module of p11-kit",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:0.25.0-2.oe2403sp4"
    },
    {
      "SPDXID": "SPDXRef-rpm-sed-4.9",
      "name": "sed",
      "licenseConcluded": "GPLv3+",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "05e9d65f8d993ef442eb8739e9319b0b7fbf59a14f57401ce57d4d7841f2f942"
        }
      ],
      "description": "Sed is a non-interactive command-line text editor. A stream editor is used\nto per-form basic text transformations on an input stream (a file or input\nfrom a pipeline).",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/sed@4.9-5.oe2403sp4?arch=x86_64&epoch=0&upstream=sed-4.9-5.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "https://www.gnu.org/software/sed/",
      "licenseDeclared": "GPLv3+",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "non-interactive command-line text editor",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:4.9-5.oe2403sp4"
    }
  ],
  "relationships": [
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-bash-5.2.15"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-coreutils-9.4"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-crypto-policies-20230614"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-crypto-policies-scripts-20230614"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-glibc-2.38"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-nspr-4.35.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-nss-softokn-3.94.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-nss-util-3.94.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-p11-kit-trust-0.25.0"
    },
    {
      "spdxElementId": "SPDXRef-rpm-nss-3.94.0",
      "relationshipType": "DEPENDS_ON",
      "relatedSpdxElement": "SPDXRef-rpm-sed-4.9"
    }
  ]
}
