{
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ca7da7be-9962-4a15-a384-6da97cc39232",
  "version": 1,
  "metadata": {
    "timestamp": "2026-03-30T09:18:53.1253Z",
    "component": {
      "type": "firmware",
      "supplier": {
        "name": "Hanwha Vision Co., Ltd.",
        "url": [
          "https://www.hanwhavision.com"
        ]
      },
      "author": "Hanwha Vision Co., Ltd.",
      "name": "Wisenet Platform",
      "publisher": "Hanwha Vision Co., Ltd.",
      "copyright": "Hanwha Vision Co., Ltd."
    },
    "manufacture": {
      "name": "Hanwha Vision Co., Ltd.",
      "url": [
        "https://www.hanwhavision.com"
      ]
    },
    "supplier": {
      "name": "Hanwha Vision Co., Ltd.",
      "url": [
        "https://www.hanwhavision.com"
      ]
    }
  },
  "components": [
    {
      "name": "rapidjson",
      "bom-ref": "rapidjson",
      "type": "library",
      "version": "1.1.0",
      "copyright": "Copyright (c) 2015 THL A29 Limited, a Tencent company, and Milo Yip.\nCopyright (c) 2002 JSON.\nCopyright (c) 2006-2013 Alexander Chemeris\nCopyright (c) 2008-2010 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2012 Julian Berman ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "Rapidjson is a JSON parser and generator for C++. It was inspired by rapidxml.\r\r\n\r\r\n *  Rapidjson is small but complete. It supports both SAX and DOM style API. The SAX parser is only a half thousand lines of code.\r\r\n\r\r\n *  Rapidjson is fast. Its performance can be comparable to strlen(). It also optionally supports SSE2/SSE4.1 for acceleration.\r\r\n\r\r\n *  Rapidjson is self-contained. It does not depend on external libraries such as BOOST. It even does not depend on STL.\r\r\n\r\r\n  *  Rapidjson is memory friendly. Each JSON value occupies exactly 16/20 bytes for most 32/64-bit machines (excluding text string). By default it uses a fast memory allocator, and the parser allocates memory compactly during parsing.",
      "supplier": {
        "url": [
          "http://rapidjson.org/"
        ]
      }
    },
    {
      "name": "SQLite",
      "bom-ref": "SQLite",
      "type": "library",
      "version": "3.39.0",
      "licenses": [
        {
          "license": {
            "name": "Public Domain"
          }
        }
      ],
      "cpe": "cpe:2.3:a:sqlite:sqlite:3.39.0:*:*:*:*:*:*:*",
      "description": "SQLite is a C-language library that implements a small, fast, self-contained, high-reliability, full-featured, SQL database engine. SQLite is the most used database engine in the world. SQLite is built into all mobile phones and most computers and comes bundled inside countless other applications that people use every day.",
      "supplier": {
        "url": [
          "http://sqlite.org/"
        ]
      }
    },
    {
      "name": "AcademySoftwareFoundation/OpenTimelineIO",
      "bom-ref": "AcademySoftwareFoundation/OpenTimelineIO",
      "type": "library",
      "version": "v0.17.0",
      "copyright": "Copyright (c) 2015 THL A29 Limited, a Tencent company, and Milo Yip\nCopyright (c) 2002 JSON.org \nCopyright (c) 2006-2013 Alexander Chemeris \nCopyright (c) 2008-2010 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2012 Julian Berman\nCopyright (c) 2015 mojmir svoboda\nCopyright (c) 2017 Bart Muzzin\nCopyright (c) Contributors to the OpenTimelineIO project",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/opentimelineio@0.17.0-3.fc43?arch=i686",
      "supplier": {
        "url": [
          "https://github.com/AcademySoftwareFoundation/OpenTimelineIO"
        ]
      }
    },
    {
      "name": "NativeBuilds: openssl-libssl",
      "bom-ref": "NativeBuilds: openssl-libssl",
      "type": "library",
      "version": "3.6.0.1",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.ensody.nativebuilds/openssl-libssl-watchosx64@3.6.0.1",
      "description": "Native builds of popular open-source libraries",
      "supplier": {
        "url": [
          "https://github.com/ensody/native-builds"
        ]
      }
    },
    {
      "name": "OpenSSL",
      "bom-ref": "OpenSSL",
      "type": "library",
      "version": "3.5.5",
      "copyright": "Copyright (c) 1995-2022 The OpenSSL Project Authors.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:apk/alpine/openssl-dev@3.5.5-r1?arch=aarch64",
      "description": "OpenSSL is a robust, commercial-grade, and full-featured toolkit for the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. It is also a general-purpose cryptography library.\r\r\n\r\r\nOpenSSL is licensed under an Apache-style license, which basically means that you are free to get and use it for commercial and non-commercial purposes subject to some simple license conditions.",
      "supplier": {
        "url": [
          "https://www.openssl.org"
        ]
      }
    },
    {
      "name": "Boost C++ Libraries - boost",
      "bom-ref": "Boost C++ Libraries - boost",
      "type": "library",
      "version": "1.83.0",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/boost-devel@1.83.0-12.fc42?arch=x86_64",
      "description": "Boost provides free portable peer-reviewed C++ libraries. The emphasis is on portable libraries which work well with the C++ Standard Library. See http://www.boost.org",
      "supplier": {
        "url": [
          "https://www.boost.org/"
        ]
      }
    },
    {
      "name": "Boost C++ Libraries - boost",
      "bom-ref": "Boost C++ Libraries - boost",
      "type": "library",
      "version": "1.86.0",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "purl": "pkg:rpm/opensuse/boost-base@1.86.0-1.4?arch=armv6hl",
      "description": "Boost provides free portable peer-reviewed C++ libraries. The emphasis is on portable libraries which work well with the C++ Standard Library. See http://www.boost.org",
      "supplier": {
        "url": [
          "https://www.boost.org/"
        ]
      }
    },
    {
      "name": "POCO C++ Libraries",
      "bom-ref": "POCO C++ Libraries",
      "type": "library",
      "version": "1.14.2",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "purl": "pkg:apk/alpine/poco-dev@1.14.2-r0?arch=riscv64",
      "description": "The POCO C++ Libraries (POCO stands for POrtable COmponents) are open source C++ class libraries that simplify and accelerate the development of network-centric, portable applications in C++. The libraries integrate perfectly with the C++ Standard Library and fill many of the functional gaps left open by it. Their modular and efficient design and implementation makes the POCO C++ Libraries extremely well suited for embedded development, an area where the C++ programming language is becoming increasingly popular, due to its suitability for both low-level (device I/O, interrupt handlers, etc.) and high-level object-oriented development. Of course, the POCO C++ Libraries are also ready for enterprise-level challenges.",
      "supplier": {
        "url": [
          "https://sourceforge.net/projects/poco/"
        ]
      }
    },
    {
      "name": "Google C++ Testing Framework",
      "bom-ref": "Google C++ Testing Framework",
      "type": "library",
      "version": "1.15.2",
      "copyright": "Copyright (c) 2005-2010, 2013, 2015, 2018-2021 Google Inc.",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "description": "Google's framework for writing C++ tests on a variety of platforms (Linux, Mac OS X, Windows, Windows CE, and Symbian). Based on the xUnit architecture. Supports automatic test discovery, a rich set of assertions, user-defined assertions, death tests, fatal and non-fatal failures, various options for running the tests, and XML test report generation.",
      "supplier": {
        "url": [
          "https://github.com/google/googletest/"
        ]
      }
    },
    {
      "name": "Open Computer Vision Library (OpenCV)",
      "bom-ref": "Open Computer Vision Library (OpenCV)",
      "type": "library",
      "version": "3.4.16",
      "copyright": "Copyright (c) Christopher Diggins 2005-2011\nCopyright (c) Kevlin Henney 2001\nCopyright (c) Pablo Aguilar 2005\nCopyright (c) 2000-2015, Intel Corporation, all rights reserved.\nCopyright (c) 2008, Google, all rights reserved.\nCopyright (c) 2008-2012, Willow Garage Inc., all rights reserved.\nCopyright (c) 2010-2013, Advanced Micro Devices, Inc., all rights reserved.\nCopyright (c) 2013, NVIDIA Corporation, all rights reserved.\nCopyright (c) 2013, OpenCV Foundation, all rights reserved.\nCopyright (c) 2014, Advanced Micro Devices, Inc., all rights reserved.\nCopyright (c) 2014-2015 Itseez Inc, all rights reserved.\nCopyright (c) 2015, OpenCV Foundation, all rights reserved.\nCopyright (c) 2016, Intel Corporation, all rights reserved.\nCopyright (c) 2018-2019, Intel Corporation, all rights reserved.\nCopyright (c) 1995 Intel Corporation.\nCopyright (c) 2008-2013 The Khronos Group Inc.\nCopyright (c) 2008-2011 David G. Lowe (lowe@cs.ubc.ca). All rights reserved.\nCopyright (c) 2008-2011 Marius Muja (mariusm@cs.ubc.ca). All rights reserved.\nCopyright (c) 2011, 2012, 2013, 2014, 2015, 2016, 2017 The Regents of the University of California. ",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:cocoapods/opencvframework@3.4.16",
      "description": "The Open Computer Vision Library is a collection of algorithms and sample code for various computer vision problems. The library is compatible with IPL and utilizes Intel Integrated Performance Primitives for better performance.",
      "supplier": {
        "url": [
          "http://opencv.org/"
        ]
      }
    },
    {
      "name": "SciPy",
      "bom-ref": "SciPy",
      "type": "library",
      "version": "1.15.3",
      "copyright": "Copyright (c) 1995 Ernst Stadlober, Institut fuer Statistitk, TU Graz\nCopyright (c) 1999-2021 Christopher Kormanyos\nCopyright (c) 1999-2004 Rasmus Munk Larsen, Stanford University\nCopyright (c) 2000-2007 W. Hoermann\nCopyright (c) 2001-2006 Daryle Walker\nCopyright (c) 2001-2005 Hubert Holin\nCopyright (c) 2001-2002 Hubert Holin and Daryle Walker\nCopyright (c) 2001 Eric Ford\nCopyright (c) 2003 C. Bond\nCopyright (c) 2005-2024 John Maddock\nCopyright (c) 2006-2011 Paul A. Bristow\nCopyright (c) 2006 Johan Rade\nCopyright (c) 2008 Bruno Lalande\nCopyright (c) 2011 ACM (Association for Computing Machinery)\nCopyright (c) 2014 Anton Bikineev\nCopyright (c) 2015-2016 Jeremy William Murphy\nCopyright (c) 2017-2023 Nick Thompson\nCopyright (c) 2020-2024 Matt Borland\nCopyright (c) 2020-2022 Matt Borland and Nick Thompson\nCopyright (c) 2020 Evan Miller\nCopyright (c) 2021 Victor Ananyev\nCopyright (c) 2022 Antony Polukhin\nCopyright (c) 2022 James Folberth\nCopyright (c) 1987 A. Volgenant/Amsterdam School of Economics\nCopyright (c) 1993-2015 The Geometry Center (University of Minnesota)\nCopyright (c) 1996-2008 Rice University\nCopyright (c) 2000-2022 Wolfgang Hoermann and Josef Leydold\nCopyright (c) 2000 Cephes Math Library Release 2.8\nCopyright (c) 2003-2009 The Regents of the University of California\nCopyright (c) 2003-2005 Peter J. Verveer\nCopyright (c) 2003-2025 SciPy Developers\nCopyright (c) 2005 Rasmus Munk Larsen, Stanford University\nCopyright (c) 2005-2015 Michele Simionato <michele.simionato@gmail.com>\nCopyright (c) 2008-2024 John Maddock\nCopyright (c) 2009-2020 The MathJax Consortium\nCopyright (c) 2010-2019 Max-Planck-Society\nCopyright (c) 2012 Massachusetts Institute of Technology\nCopyright (c) 2013 Andrea Gavana <andrea.gavana@gmail.com>\nCopyright (c) 2018 Quansight-Labs\nCopyright (c) 2021-2024 Tom M. Ragonneau and Zaikun Zhang\nCopyright (c) 2022-2024 Consortium for Python Data API Standards\nCopyright (c) 2024 HiGHS\nCopyright (c) Christian Lorentzen",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/scipy@1.15.3-1",
      "description": "SciPy git clone",
      "supplier": {
        "url": [
          "http://www.scipy.org"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "1.4.0",
      "copyright": "Copyright (c) 2013-2024 Frank Pagliughi <fpagliughi@mindspring.com> \nCopyright (c) 2016 Guilherme M. Ferreira <guilherme.maciel.ferreira@gmail.com> \nCopyright (c) 2007, Eclipse Foundation, Inc. and its licensors.",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "1.4.1",
      "copyright": "Copyright (c) 2013-2024 Frank Pagliughi <fpagliughi@mindspring.com>\nCopyright (c) 2016 Guilherme Ferreira <guilherme.maciel.ferreira@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "v1.2.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "v1.3.2",
      "copyright": "Copyright (c) 2015-2023 Frank Pagliughi <fpagliughi@mindspring.com>\nCopyright (c) 2016 Guilherme M. Ferreira <guilherme.maciel.ferreira@gmail.com> ",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/paho-cpp-devel@1.3.2-2.el9?arch=x86_64",
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "libpaho-mqtt-dev",
      "bom-ref": "libpaho-mqtt-dev",
      "type": "library",
      "version": "1.3.13",
      "copyright": "Copyright (c) 2009-2023, IBM Corp. \nCopyright (c) 2018-2023 Roman Ondr \nCopyright (c) 2009, 2023 IBM Corp., Ian Craggs and others\nCopyright (c) 2017, 2023 IBM Corp. and others \nCopyright (c) 2020 Andreas Walter ",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "purl": "pkg:deb/debian/libpaho-mqtt-dev@1.3.13-1?arch=mips64el",
      "description": "Eclipse Paho MQTT C client - development files\r\nThis libraries enable applications to connect to an MQTT broker to publish\r\nmessages, and to subscribe to topics and receive published messages.\r\n\r\nThis package contains files for development and static libraries.",
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.c/"
        ]
      }
    },
    {
      "name": "gSOAP",
      "bom-ref": "gSOAP",
      "type": "library",
      "version": "2.8.129",
      "licenses": [
        {
          "license": {
            "name": "Genevia gSOAP Commercial License"
          }
        }
      ],
      "description": "The gSOAP toolkit is an extensive suite of portable C and C++ software to develop XML Web services with powerful type-safe XML data bindings. Easy-to-use code-generator tools allow you to directly integrate XML data in C and C++ (and C++11/C++14). Serializes native application data in XML. Includes WSDL/XSD schema binding and auto-coding tools, stub/skeleton compiler, Web server integration with Apache module and IIS extension, high-performance XML processing with schema validation, fast MIME/MTOM streaming, SOAP and REST (WCF compatible), WS-* protocols (WS-Security, WS-Policy, WS-ReliableMessaging, etc), XML-RPC and JSON.",
      "supplier": {
        "url": [
          "http://sourceforge.net/projects/gsoap2"
        ]
      }
    },
    {
      "name": "FFmpeg",
      "bom-ref": "FFmpeg",
      "type": "library",
      "version": "6.1.1",
      "copyright": "Copyright (c) 2001-2013 Michael Niedermayer (michaelni@gmx.at)\nCopyright (c) 2003 Ivan Kalvachev\nCopyright (c) 2007 Marco Gerards <marco@gnu.org>\nCopyright (c) 2008 NVIDIA\nCopyright (c) 2008-2009 Splitted-Desktop Systems\nCopyright (c) 2009 David Conrad\nCopyright (c) 2011 Jordi Ortiz\nCopyright (c) 2012 Martin Storsjo\nCopyright (c) 2013 James Almer <jamrial@gmail.com>\nCopyright (c) 2006-2007, 2013 Reimar Doeffinger\nCopyright (c) 2000-2003 Fabrice Bellard\nCopyright (c) 2006 Ryan Martell. (rdm4@martellventures.com)\nCopyright (c) 2007 Bobby Bingham\nCopyright (c) 2006-2007, 2011 Mans Rullgard\nCopyright (c) 2008 Peter Ross\nCopyright (c) 2006, 2009 Baptiste Coudurier <baptiste.coudurier@gmail.com>\nCopyright (c) 2010, 2012 Nicolas George\nCopyright (c) 2011 Reinhard Tartler\nCopyright (c) 2011-2014 Stefano Sabatini\nCopyright (c) 2006, 2011-2012 Smartjog S.A.S\nCopyright (c) 2011-2012, 2014 Cl\nCopyright (c) 2012 Justin Ruggles <justin.ruggles@gmail.com>\nCopyright (c) 2012 Samuel Pitoiset\nCopyright (c) 2013-2014, 2016 Vittorio Giovara <vittorio.giovara@gmail.com>\nCopyright (c) 2013-2018 Andreas Unterweger\nCopyright (c) 2014 Andrey Utkin\nCopyright (c) 2014 Lukasz Marek \nCopyright (c) 2014-2015 Supraja Meedinti\nCopyright (c) 2014 Tim Walker <tdskywalker@gmail.com>\nCopyright (c) 2015 Anton Khirnov\nCopyright (c) 2015 Eran Kornblau <erankor at gmail dot com>\nCopyright (c) 2015 Stephan Holljes\nCopyright (c) 2015 Vesselin Bontchev\nCopyright (c) 2015-2016 Matthieu Bouron <matthieu.bouron stupeflix.com>\nCopyright (c) 2016 Neil Birkbeck <neil.birkbeck@gmail.com>\nCopyright (c) 2017 Jun Zhao \nCopyright (c) 2017 Kaixuan Liu\nCopyright (c) 2018 Mohammad Izadi <moh.izadi at gmail.com>\nCopyright (c) 2020 Vacing Fang <vacingfang@tencent.com>\nCopyright (c) 2009 Laurent Aimar\nCopyright (c) 2012 Sebastien Zwickert\nCopyright (c) 2013 Andrew Kelley\nCopyright (c) 2015 Steve Lhomme",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/libavutil-free-devel@6.1.1-15.fc41?arch=i686",
      "supplier": {
        "url": [
          "http://www.ffmpeg.org/"
        ]
      }
    },
    {
      "name": "FFmpeg",
      "bom-ref": "FFmpeg",
      "type": "library",
      "version": "7.1.2",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "purl": "pkg:apk/alpine/ffmpeg7-dev@7.1.2-r3?arch=x86",
      "supplier": {
        "url": [
          "http://www.ffmpeg.org/"
        ]
      }
    },
    {
      "name": "HowardHinnant/date",
      "bom-ref": "HowardHinnant/date",
      "type": "library",
      "version": "v3.0.1",
      "copyright": "Copyright (c) 2015 Ville Voutilainen\nCopyright (c) 2015-2017, 2020-2021 Howard Hinnant <howard.hinnant@gmail.com>\nCopyright (c) 2016 Adrian Colomitchi\nCopyright (c) 2016 Alexander Kormanovsky <schmidt9@rambler.ru>\nCopyright (c) 2016, 2017, 2019 Jiangang Zhuang\nCopyright (c) 2017 Aaron Bishop\nCopyright (c) 2017 Florian Dang\nCopyright (c) 2017 Nicolas Veloz Savino\nCopyright (c) 2017 Paul Thompson\nCopyright (c) 2017-2019 Tomasz Kami\nCopyright (c) 2019-2020 Asad. Gharighi\nCopyright (c) 2017 Darrell Wright <dwright-git@dawdevel.ca>\nCopyright (c) 2019 Michael Tsukerman <miketsukerman@gmail.com>\nCopyright (c) 2019 Mike Ellery <mellery451@gmail.com>\nCopyright (c) 2019 nanoric <nanoric@qq.com>\nCopyright (c) 2021 Andrea Pappacoda <andrea@pappacoda.it>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/howardhinnant/date@v3.0.1",
      "supplier": {
        "url": [
          "https://github.com/HowardHinnant/date"
        ]
      }
    },
    {
      "name": "JSON for Modern Cpp",
      "bom-ref": "JSON for Modern Cpp",
      "type": "library",
      "version": "3.11.3",
      "copyright": "Copyright (c) 2003-2017 University of Illinois at Urbana-Champaign.\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2012, Erik Edlund <erik.edlund@32767.se>\nCopyright (c) 2013-2023 Niels Lohmann <http://nlohmann.me>\nCopyright (c) 2016-2023 Viktor Kirilov \nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2009 Florian Loitsch\nCopyright (c) 2009 Google Inc.\nCopyright (c) 2016 Muri Nicanor <muri@immerda.ch>\nCopyright (c) University of Illinois at Urbana-Champaign",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "JSON for Modern C++",
      "supplier": {
        "url": [
          "https://json.nlohmann.me"
        ]
      }
    },
    {
      "name": "libchromaprint0",
      "bom-ref": "libchromaprint0",
      "type": "library",
      "version": "1.6.0",
      "copyright": "Copyright (c) 2001, Fabrice Bellard\nCopyright (c) 2003-2019, Mark Borgerding. All rights reserved.\nCopyright (c) 2004, Michael Niedermayer michaelni@gmx.at\nCopyright (c) 2005-2021, Google LLC / Google Inc. All rights reserved.\nCopyright (c) 2006, Laurent Montel montel@kde.org\nCopyright (c) 2010-2016, Lukas Lalinsky lalinsky@gmail.com\nCopyright (c) 2020, Jan Tojnar\nCopyright (c) 2021, Vasyl Gello",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/chromaprint@1.6.0-2build1",
      "description": "Debian is a free operating system (OS) for your computer. An operating system is the set of basic programs and utilities that make your computer run. Debian uses the Linux kernel (the core of an operating system), but most of the basic OS tools come from the GNU project; hence the name GNU/Linux.",
      "supplier": {
        "url": [
          "https://acoustid.org/chromaprint"
        ]
      }
    },
    {
      "name": "libspatialindex",
      "bom-ref": "libspatialindex",
      "type": "library",
      "version": "2.1.0",
      "copyright": "Copyright (c) 1993 Martin Birgmeier\nCopyright (c) 1994-2020 Free Software Foundation, Inc.\nCopyright (c) 2002-2024 Marios Hadjieleftheriou\nCopyright (c) 2003-2021 Google LLC (formerly Google Inc.)\nCopyright (c) 2009-2014 Howard Butler\nCopyright (c) 2010 Leonard Norrg\nCopyright (c) 2010 Matthias (nitro)\nCopyright (c) 2015 Norman Barker\nCopyright (c) 2023 Peter Labadorf",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/spatialindex@2.1.0-1build1",
      "description": "C++ implementation of R*-tree, an MVR-tree and a TPR-tree with C API",
      "supplier": {
        "url": [
          "http://libspatialindex.github.com"
        ]
      }
    },
    {
      "name": "libvpl2",
      "bom-ref": "libvpl2",
      "type": "library",
      "version": "2.14.0",
      "copyright": "Copyright (c) Intel Corporation",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/libvpl-devel@2.14.0-2.fc42?arch=x86_64&epoch=1",
      "description": "The oneAPI Video Processing Library (oneVPL) provides a single video processing\r\nAPI for encode, decode, and video processing that works across a wide range of\r\naccelerators.",
      "supplier": {
        "url": [
          "https://github.com/oneapi-src/oneVPL"
        ]
      }
    },
    {
      "name": "libxml2",
      "bom-ref": "libxml2",
      "type": "library",
      "version": "2.15.1",
      "copyright": "Copyright (c) 1998-2012 Daniel Veillard.\nCopyright (c) 2000,2012 Bjorn Reese and Daniel Veillard.\nCopyright (c) 2010-2017 Christopher Swenson. \nCopyright (c) 2012 Google Inc.\nCopyright (c) 2012 Vojtech Fried. ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libxml2-dev@2.15.1%2Bdfsg-2%2Bb1?arch=loong64",
      "description": "Libxml2 is the XML C parser and toolkit developed for the Gnome project (but usable outside of the Gnome platform).\r\r\n\r\r\nIncludes the xmllint tool for checking documents for well-formedness, validating documents against a DTD or XML Schema, and pretty printing XML input.",
      "supplier": {
        "url": [
          "https://github.com/GNOME/libxml2"
        ]
      }
    },
    {
      "name": "pugixml",
      "bom-ref": "pugixml",
      "type": "library",
      "version": "1.15",
      "copyright": "Copyright (c) 2006-2023 Arseny Kapoulkine (arseny.kapoulkine@gmail.com) \nCopyright (c) 2003, by Kristen Wegner (kristen@tima.net)\nCopyright (c) 2004 Joel de Guzman ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/zeux/pugixml@v1.15",
      "description": "PugiXML is a heavily refactored/reworked version of PugXML (basically, what is left is general idea of in-situ parsing, class naming schemes and parts of inner parsing loop). It is meant to be used for loading XML files where speed is important. \r\r\n\r\r\nCurrent version: 1.2 (May 1, 2012)",
      "supplier": {
        "url": [
          "http://pugixml.org/"
        ]
      }
    },
    {
      "name": "rapidjson",
      "bom-ref": "rapidjson",
      "type": "library",
      "version": "1.1.0^20241222git24b5e7a",
      "copyright": "Copyright (c) 2015 THL A29 Limited, a Tencent company, and Milo Yip\nCopyright (c) 2015 THL A29 Limited.\nCopyright (c) 2006-2013 Alexander Chemeris",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "Rapidjson is a JSON parser and generator for C++. It was inspired by rapidxml.\r\r\n\r\r\n *  Rapidjson is small but complete. It supports both SAX and DOM style API. The SAX parser is only a half thousand lines of code.\r\r\n\r\r\n *  Rapidjson is fast. Its performance can be comparable to strlen(). It also optionally supports SSE2/SSE4.1 for acceleration.\r\r\n\r\r\n *  Rapidjson is self-contained. It does not depend on external libraries such as BOOST. It even does not depend on STL.\r\r\n\r\r\n  *  Rapidjson is memory friendly. Each JSON value occupies exactly 16/20 bytes for most 32/64-bit machines (excluding text string). By default it uses a fast memory allocator, and the parser allocates memory compactly during parsing.",
      "supplier": {
        "url": [
          "http://rapidjson.org/"
        ]
      }
    },
    {
      "name": "spdlog",
      "bom-ref": "spdlog",
      "type": "library",
      "version": "1.15.3",
      "copyright": "Copyright (c) 2012-present Victor Zverovich and fmt contributors\nCopyright (c) 2015-present Gabi Melman, mguludag and spdlog contributors\nCopyright (c) 2016 Alexander Dalshov\nCopyright (c) 2019 Paul Dreik\nCopyright (c) 2019 Alexander Zvyagin <ZVYAGIN.Alexander@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/spdlog@1.15.3-3.fc43?arch=i686",
      "description": "Super fast C++ logging library.",
      "supplier": {
        "url": [
          "https://github.com/gabime/spdlog"
        ]
      }
    },
    {
      "name": "toml11",
      "bom-ref": "toml11",
      "type": "library",
      "version": "v3.6.0",
      "copyright": "Copyright (c) 2017, 2019 Toru Niina",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "TOML for Modern C++",
      "supplier": {
        "url": [
          "https://github.com/ToruNiina/toml11"
        ]
      }
    },
    {
      "name": "tomlplusplus",
      "bom-ref": "tomlplusplus",
      "type": "library",
      "version": "v3.4.0",
      "copyright": "Copyright (c) 2013-2022 Niels Lohmann <http://nlohmann.me>\nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2019-2020 Mark Gillard <mark.gillard@outlook.com.au>\nCopyright (c) 2017, 2022 Two Blue Cubes Ltd.\nCopyright (c) Catch2 Authors",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/marzer/tomlplusplus@v3.4.0",
      "description": "Header-only TOML parser and serializer for modern C++.",
      "supplier": {
        "url": [
          "https://marzer.github.io/tomlplusplus/"
        ]
      }
    },
    {
      "name": "OpenLDAP",
      "bom-ref": "OpenLDAP",
      "type": "library",
      "version": "2.5.19",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Open LDAP Public License 2.8"
          }
        }
      ],
      "description": "OpenLDAP is a free, open source implementation of the Lightweight Directory Access Protocol (LDAP) developed by the OpenLDAP Project.",
      "supplier": {
        "url": [
          "http://www.openldap.org/"
        ]
      }
    },
    {
      "name": "mdns",
      "bom-ref": "mdns",
      "type": "library",
      "version": "1.4.2",
      "licenses": [
        {
          "license": {
            "name": "Unlicense"
          }
        }
      ],
      "description": "Public domain mDNS/DNS-SD library in C",
      "supplier": {
        "url": [
          "https://github.com/mjansson/mdns"
        ]
      }
    },
    {
      "name": "libjpeg-turbo",
      "bom-ref": "libjpeg-turbo",
      "type": "library",
      "version": "2.1.4",
      "copyright": "Copyright (c) 1991-2010, Thomas G. Lane, Guido Vollbeding.\nCopyright (c) 1991-2010 Thomas G. Lane \nCopyright (c) 2014 Ond \nCopyright (c) 2011, John Resig \nCopyright (c) 2005 Guido Vollbeding <guido@jpegclub.org> \nCopyright (c) 2011, The Dojo Foundation \nCopyright (c) 2009-2015, 2017 D. R. Commander.",
      "licenses": [
        {
          "license": {
            "name": "Zlib License"
          }
        }
      ],
      "purl": "pkg:conda/libjpeg-turbo@2.1.4-h4e544f5_0-linux-aarch64",
      "supplier": {
        "url": [
          "http://libjpeg-turbo.virtualgl.org/"
        ]
      }
    },
    {
      "name": "libjpeg-turbo",
      "bom-ref": "libjpeg-turbo",
      "type": "library",
      "version": "2.1.5.1",
      "copyright": "Copyright (c) 2009-2023 D. R. Commander. \nCopyright (c) 2011-2012, 2014-2015, 2017, 2019, 2021-2023 * D. R. Commander. \nCopyright (c) 2015 Viktor Szathm Redistribution\nCopyright (c) 1991-2020, Thomas G. Lane, Guido Vollbeding. \nCopyright (c) ACM and IEEE",
      "licenses": [
        {
          "license": {
            "name": "Zlib License"
          }
        }
      ],
      "purl": "pkg:apk/alpine/libjpeg-turbo-doc@2.1.5.1-r2?arch=noarch",
      "supplier": {
        "url": [
          "http://libjpeg-turbo.virtualgl.org/"
        ]
      }
    },
    {
      "name": "OpenSSL",
      "bom-ref": "OpenSSL",
      "type": "library",
      "version": "3.5.5",
      "copyright": "Copyright (c) 1995-2022 The OpenSSL Project Authors.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "OpenSSL is a robust, commercial-grade, and full-featured toolkit for the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. It is also a general-purpose cryptography library.\r\r\n\r\r\nOpenSSL is licensed under an Apache-style license, which basically means that you are free to get and use it for commercial and non-commercial purposes subject to some simple license conditions.",
      "supplier": {
        "url": [
          "https://www.openssl.org"
        ]
      }
    },
    {
      "name": "Boost C++ Libraries - boost",
      "bom-ref": "Boost C++ Libraries - boost",
      "type": "library",
      "version": "1.86.0",
      "copyright": "Copyright (c) 2015-2020 Niall Douglas\nCopyright (c) 2011-2020 Edward Diener\nCopyright (c) 2002-2020 Robert Ramey \nCopyright (c) 2001-2014 Beman Dawes Boost.Filesystem\nCopyright (c) 2002-2008 Fernando Luis Cacciola Carballal.\nCopyright (c) 2005-2012 Anthony Williams \nCopyright (c) 2011-2018 Vicente J. Botet Escriba \nCopyright (c) 2005-2019 Rene Rivera \nCopyright (c) 2001-2020 Peter Dimov\nCopyright (c) 2005-2020 Ion Gaztanaga\nCopyright (c) 1999-2018 John Maddock\nCopyright (c) 2006-2017 Paul A. Bristow\nCopyright (c) 2017-2020 Nick Thompson\nCopyright (c) 2015-2020 Vinnie Falco (vinnie.falco@gmail.com)\nCopyright (c) 2003-2020 Christopher M. Kohlhoff (chris at kohlhoff dot com)\nCopyright (c) 2002-2020 Christopher Kormanyos\nCopyright (c) 2019-2020 Krystian Stasiowski (sdkrystian@gmail.com)\nCopyright (c) 2007-2008 CodeRage, LLC\nCopyright (c) 2013-2020 Oracle and/or its affiliates. \nCopyright (c) 2008-2019 Lorenzo Caminiti\nCopyright (c) 2001-2019 Joel de Guzman\nCopyright (c) 2002-2020 CrystalClear Software, Inc. \nCopyright (c) 2007-2020 Barend Gehrels, Amsterdam, the Netherlands.\nCopyright (c) 2009-2017 Mateusz Loskot, London, UK. \nCopyright (c) 2009-2020 Vladimir Batov.\nCopyright (c) 2011-2019 Adam Wulkiewicz, Lodz, Poland.\nCopyright (c) 2011-2020 Antony Polukhin\nCopyright (c) 2003-2020 Joaquin M Lopez Munoz.\nCopyright (c) 2014-2020 Glen Joseph Fernandes\nCopyright (c) 2015-2018 Andrey Semashev\nCopyright (c) 2010-2018 Abel Sinkovics (abel@sinkovics.hu)",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "description": "Boost provides free portable peer-reviewed C++ libraries. The emphasis is on portable libraries which work well with the C++ Standard Library. See http://www.boost.org",
      "supplier": {
        "url": [
          "https://www.boost.org/"
        ]
      }
    },
    {
      "name": "POCO C++ Libraries",
      "bom-ref": "POCO C++ Libraries",
      "type": "library",
      "version": "1.14.2",
      "copyright": "Copyright (c) by Kevlin Henney. Modified for Poco\nCopyright (c) Kevlin Henney, 2000, 2001, 2002.\nCopyright (c) 2004-2020, 2022 Applied Informatics Software Engineering GmbH.\nCopyright (c) 1983, 1993 The Regents of the University of California.\nCopyright (c) 2001 by Andrei Alexandrescu\nCopyright (c) 2017 Rhodri James <rhodri@wildebeest.org.uk>\nCopyright (c) 2016 Thomas Beutlich <tc@tbeu.de>\nCopyright (c) 2022 Thijs Schreijer <thijs@thijsschreijer.nl>\nCopyright (c) Nicolai M. Josuttis 2001.\nCopyright (c) 2000-2005 Fred L. Drake, Jr. <fdrake@users.sourceforge.net>\nCopyright (c) 2016-2019 Sebastian Pipping <sebastian@pipping.org>\nCopyright (c) 2009-2013 Code Synthesis Tools CC.\nCopyright (c) 2016 Cristian Rodr\nCopyright (c) 2016-2022 Sebastian Pipping <sebastian@pipping.org>\nCopyright (c) 2001-2002 Greg Stein <gstein@users.sourceforge.net>\nCopyright (c) 1995-2022 Jean-loup Gailly and Mark Adler\nCopyright (c) Addison-Wesley 2001\nCopyright (c) 1997-2000 Thai Open Source Software Center Ltd\nCopyright (c) 2002-2016 Karl Waclawek <karl@waclawek.net>\nCopyright (c) 2018 Yury Gribov <tetra2005@gmail.com>\nCopyright (c) Calum Grant 2007\nCopyright (c) 1991-2, RSA Data Security, Inc. Created 1991.\nCopyright (c) 2001-2004 Unicode, Inc.\nCopyright (c) 2005-2014 Daniel James.\nCopyright (c) 2000 Clark Cooper <coopercc@users.sourceforge.net>\nCopyright (c) 2017 Tessil\nCopyright (c) 2011, Anton V. Yabchinskiy (arn at bestmx dot ru).",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "description": "The POCO C++ Libraries (POCO stands for POrtable COmponents) are open source C++ class libraries that simplify and accelerate the development of network-centric, portable applications in C++. The libraries integrate perfectly with the C++ Standard Library and fill many of the functional gaps left open by it. Their modular and efficient design and implementation makes the POCO C++ Libraries extremely well suited for embedded development, an area where the C++ programming language is becoming increasingly popular, due to its suitability for both low-level (device I/O, interrupt handlers, etc.) and high-level object-oriented development. Of course, the POCO C++ Libraries are also ready for enterprise-level challenges.",
      "supplier": {
        "url": [
          "https://sourceforge.net/projects/poco/"
        ]
      }
    },
    {
      "name": "Google C++ Testing Framework",
      "bom-ref": "Google C++ Testing Framework",
      "type": "library",
      "version": "1.15.2",
      "copyright": "Copyright (c) 2005-2010, 2013, 2015, 2018-2021 Google Inc.",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "description": "Google's framework for writing C++ tests on a variety of platforms (Linux, Mac OS X, Windows, Windows CE, and Symbian). Based on the xUnit architecture. Supports automatic test discovery, a rich set of assertions, user-defined assertions, death tests, fatal and non-fatal failures, various options for running the tests, and XML test report generation.",
      "supplier": {
        "url": [
          "https://github.com/google/googletest/"
        ]
      }
    },
    {
      "name": "libpaho-mqtt-dev",
      "bom-ref": "libpaho-mqtt-dev",
      "type": "library",
      "version": "1.3.13",
      "copyright": "Copyright (c) 2009-2023, IBM Corp. \nCopyright (c) 2018-2023 Roman Ondr \nCopyright (c) 2009, 2023 IBM Corp., Ian Craggs and others\nCopyright (c) 2017, 2023 IBM Corp. and others \nCopyright (c) 2020 Andreas Walter ",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "purl": "pkg:deb/debian/libpaho-mqtt-dev@1.3.13-1?arch=mips64el",
      "description": "Eclipse Paho MQTT C client - development files\r\nThis libraries enable applications to connect to an MQTT broker to publish\r\nmessages, and to subscribe to topics and receive published messages.\r\n\r\nThis package contains files for development and static libraries.",
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.c/"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "v1.3.2",
      "copyright": "Copyright (c) 2015-2023 Frank Pagliughi <fpagliughi@mindspring.com>\nCopyright (c) 2016 Guilherme M. Ferreira <guilherme.maciel.ferreira@gmail.com> ",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/paho-cpp-devel@1.3.2-2.el9?arch=x86_64",
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "eclipse/paho.mqtt.cpp",
      "bom-ref": "eclipse/paho.mqtt.cpp",
      "type": "library",
      "version": "v1.2.0",
      "copyright": "Copyright (c) 2013-2024 Frank Pagliughi <fpagliughi@mindspring.com> \nCopyright (c) 2016 Guilherme M. Ferreira <guilherme.maciel.ferreira@gmail.com> \nCopyright (c) 2007, Eclipse Foundation, Inc. and its licensors.",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/eclipse/paho.mqtt.cpp/"
        ]
      }
    },
    {
      "name": "FFmpeg",
      "bom-ref": "FFmpeg",
      "type": "library",
      "version": "7.1.2",
      "copyright": "Copyright (c) 2001-2013 Michael Niedermayer (michaelni@gmx.at)\nCopyright (c) 2003 Ivan Kalvachev\nCopyright (c) 2007 Marco Gerards <marco@gnu.org>\nCopyright (c) 2008 NVIDIA\nCopyright (c) 2008-2009 Splitted-Desktop Systems\nCopyright (c) 2009 David Conrad\nCopyright (c) 2011 Jordi Ortiz\nCopyright (c) 2012 Martin Storsjo\nCopyright (c) 2013 James Almer <jamrial@gmail.com>\nCopyright (c) 2006-2007, 2013 Reimar Doeffinger\nCopyright (c) 2000-2003 Fabrice Bellard\nCopyright (c) 2006 Ryan Martell. (rdm4@martellventures.com)\nCopyright (c) 2007 Bobby Bingham\nCopyright (c) 2006-2007, 2011 Mans Rullgard\nCopyright (c) 2008 Peter Ross\nCopyright (c) 2006, 2009 Baptiste Coudurier <baptiste.coudurier@gmail.com>\nCopyright (c) 2010, 2012 Nicolas George\nCopyright (c) 2011 Reinhard Tartler\nCopyright (c) 2011-2014 Stefano Sabatini\nCopyright (c) 2006, 2011-2012 Smartjog S.A.S\nCopyright (c) 2011-2012, 2014 Cl\nCopyright (c) 2012 Justin Ruggles <justin.ruggles@gmail.com>\nCopyright (c) 2012 Samuel Pitoiset\nCopyright (c) 2013-2014, 2016 Vittorio Giovara <vittorio.giovara@gmail.com>\nCopyright (c) 2013-2018 Andreas Unterweger\nCopyright (c) 2014 Andrey Utkin\nCopyright (c) 2014 Lukasz Marek \nCopyright (c) 2014-2015 Supraja Meedinti\nCopyright (c) 2014 Tim Walker <tdskywalker@gmail.com>\nCopyright (c) 2015 Anton Khirnov\nCopyright (c) 2015 Eran Kornblau <erankor at gmail dot com>\nCopyright (c) 2015 Stephan Holljes\nCopyright (c) 2015 Vesselin Bontchev\nCopyright (c) 2015-2016 Matthieu Bouron <matthieu.bouron stupeflix.com>\nCopyright (c) 2016 Neil Birkbeck <neil.birkbeck@gmail.com>\nCopyright (c) 2017 Jun Zhao \nCopyright (c) 2017 Kaixuan Liu\nCopyright (c) 2018 Mohammad Izadi <moh.izadi at gmail.com>\nCopyright (c) 2020 Vacing Fang <vacingfang@tencent.com>\nCopyright (c) 2009 Laurent Aimar\nCopyright (c) 2012 Sebastien Zwickert\nCopyright (c) 2013 Andrew Kelley\nCopyright (c) 2015 Steve Lhomme",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "supplier": {
        "url": [
          "http://www.ffmpeg.org/"
        ]
      }
    },
    {
      "name": "@electron-fonts/noto-sans-kr",
      "bom-ref": "@electron-fonts/noto-sans-kr",
      "type": "library",
      "version": "1.1.1",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:npm/%40electron-fonts/noto-sans-kr@1.1.1",
      "description": "Noto Sans KR font injector to electron aplications.",
      "supplier": {
        "url": [
          "https://github.com/ArthurLobopro/electron-fonts#readme"
        ]
      }
    },
    {
      "name": "@electron-fonts/noto-sans-mono",
      "bom-ref": "@electron-fonts/noto-sans-mono",
      "type": "library",
      "version": "1.1.1",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:npm/%40electron-fonts/noto-sans-mono@1.1.1",
      "description": "Noto Sans Mono font injector to electron aplications.",
      "supplier": {
        "url": [
          "https://github.com/ArthurLobopro/electron-fonts#readme"
        ]
      }
    },
    {
      "name": "@mitsuharu/vivliostyle-theme-noto-sans-jp",
      "bom-ref": "@mitsuharu/vivliostyle-theme-noto-sans-jp",
      "type": "library",
      "version": "0.1.3",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:npm/%40mitsuharu/vivliostyle-theme-noto-sans-jp@0.1.3",
      "description": "This is a vivliostyle theme that sets fonts to Noto Sans JP and Noto Sans Mono. If use it, you MUST use with other themes.",
      "supplier": {
        "url": [
          "https://github.com/mitsuharu/vivliostyle-theme-noto-sans-jp#readme"
        ]
      }
    },
    {
      "name": "HowardHinnant/date",
      "bom-ref": "HowardHinnant/date",
      "type": "library",
      "version": "v3.0.1",
      "copyright": "Copyright (c) 2015 Ville Voutilainen\nCopyright (c) 2015-2017, 2020-2021 Howard Hinnant <howard.hinnant@gmail.com>\nCopyright (c) 2016 Adrian Colomitchi\nCopyright (c) 2016 Alexander Kormanovsky <schmidt9@rambler.ru>\nCopyright (c) 2016, 2017, 2019 Jiangang Zhuang\nCopyright (c) 2017 Aaron Bishop\nCopyright (c) 2017 Florian Dang\nCopyright (c) 2017 Nicolas Veloz Savino\nCopyright (c) 2017 Paul Thompson\nCopyright (c) 2017-2019 Tomasz Kami\nCopyright (c) 2019-2020 Asad. Gharighi\nCopyright (c) 2017 Darrell Wright <dwright-git@dawdevel.ca>\nCopyright (c) 2019 Michael Tsukerman <miketsukerman@gmail.com>\nCopyright (c) 2019 Mike Ellery <mellery451@gmail.com>\nCopyright (c) 2019 nanoric <nanoric@qq.com>\nCopyright (c) 2021 Andrea Pappacoda <andrea@pappacoda.it>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/howardhinnant/date@v3.0.1",
      "supplier": {
        "url": [
          "https://github.com/HowardHinnant/date"
        ]
      }
    },
    {
      "name": "i965-va-driver",
      "bom-ref": "i965-va-driver",
      "type": "library",
      "version": "2.22.0",
      "copyright": "Copyright (c) 2009 Splitted-Desktop Systems. \nCopyright (c) 2007 Intel Corporation. \nCopyright (c) 2007-2021,2024 Intel Corporation. \nCopyright (c) 2007,2008 Red Hat, Inc. \nCopyright (c) 2022 Collabora Ltd. ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/centos/libva-devel@2.22.0-2.el10?arch=s390x",
      "description": "VAAPI driver for Intel G45 & HD Graphics family\r\nThe VA-API (Video Acceleration API) enables hardware accelerated video\r\ndecode/encode at various entry-points (VLD, IDCT, Motion Compensation\r\netc.) for the prevailing coding standards today (MPEG-2, MPEG-4\r\nASP/H.263, MPEG-4 AVC/H.264, and VC-1/WMV3). It provides an interface\r\nto fully expose the video decode capabilities in today's GPUs.\r\n\r\nThis package contains the video decode and encode driver backend for the\r\nIntel G45 chipsets and Intel HD Graphics for the Intel Core processor family.\r\nThe supported platforms include:\r\n * Cantiga, Intel GMA 4500MHD (GM45)\r\n * Ironlake, Intel HD Graphics for 2010 Intel Core processor family\r\n * Sandy Bridge, Intel HD Graphics for 2011 Intel Core processor family\r\n * Ivy Bridge\r\n * Haswell\r\n * Broadwell",
      "supplier": {
        "url": [
          "https://01.org/linuxmedia/vaapi"
        ]
      }
    },
    {
      "name": "JSON for Modern Cpp",
      "bom-ref": "JSON for Modern Cpp",
      "type": "library",
      "version": "3.11.3",
      "copyright": "Copyright (c) 2003-2017 University of Illinois at Urbana-Champaign.\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2012, Erik Edlund <erik.edlund@32767.se>\nCopyright (c) 2013-2023 Niels Lohmann <http://nlohmann.me>\nCopyright (c) 2016-2023 Viktor Kirilov \nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2009 Florian Loitsch\nCopyright (c) 2009 Google Inc.\nCopyright (c) 2016 Muri Nicanor <muri@immerda.ch>\nCopyright (c) University of Illinois at Urbana-Champaign",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "JSON for Modern C++",
      "supplier": {
        "url": [
          "https://json.nlohmann.me"
        ]
      }
    },
    {
      "name": "libspatialindex",
      "bom-ref": "libspatialindex",
      "type": "library",
      "version": "2.1.0",
      "copyright": "Copyright (c) 1993, Martin Birgmeier\nCopyright (c) 2002-2024, Marios Hadjieleftheriou\nCopyright (c) 2003-2020, Google Inc.\nCopyright (c) 1994-2020 Free Software Foundation, Inc.\nCopyright (c) 1993 Martin Birgmeier\nCopyright (c) 2002-2004 Marios Hadjieleftheriou\nCopyright (c) 2009, 2011, 2014 Howard Butler\nCopyright (c) 2010, Leonard Norrg\nCopyright (c) 2010, Matthias (nitro)\nCopyright (c) 2015, Norman Barker\nCopyright (c) 2023, Peter Labadorf\nCopyright (c) 2005-2010, 2013, 2015, 2018-2021 Google Inc.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/spatialindex@2.1.0-1build1",
      "description": "C++ implementation of R*-tree, an MVR-tree and a TPR-tree with C API",
      "supplier": {
        "url": [
          "http://libspatialindex.github.com"
        ]
      }
    },
    {
      "name": "ibvpl2",
      "bom-ref": "ibvpl2",
      "type": "library",
      "version": "2.14.0",
      "copyright": "Copyright (c) Intel Corporation",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ]
    },
    {
      "name": "pugixml",
      "bom-ref": "pugixml",
      "type": "library",
      "version": "1.15",
      "copyright": "Copyright (c) 2006-2023 Arseny Kapoulkine (arseny.kapoulkine@gmail.com) \nCopyright (c) 2003, by Kristen Wegner (kristen@tima.net)\nCopyright (c) 2004 Joel de Guzman ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "PugiXML is a heavily refactored/reworked version of PugXML (basically, what is left is general idea of in-situ parsing, class naming schemes and parts of inner parsing loop). It is meant to be used for loading XML files where speed is important. \r\r\n\r\r\nCurrent version: 1.2 (May 1, 2012)",
      "supplier": {
        "url": [
          "http://pugixml.org/"
        ]
      }
    },
    {
      "name": "rapidjson",
      "bom-ref": "rapidjson",
      "type": "library",
      "version": "1.1.0^20241222git24b5e7a",
      "copyright": "Copyright (c) 2015 THL A29 Limited, a Tencent company, and Milo Yip\nCopyright (c) 2015 THL A29 Limited.\nCopyright (c) 2006-2013 Alexander Chemeris",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/rapidjson-devel@1.1.0%5E20241222git24b5e7a-3.fc43?arch=aarch64",
      "description": "Rapidjson is a JSON parser and generator for C++. It was inspired by rapidxml.\r\r\n\r\r\n *  Rapidjson is small but complete. It supports both SAX and DOM style API. The SAX parser is only a half thousand lines of code.\r\r\n\r\r\n *  Rapidjson is fast. Its performance can be comparable to strlen(). It also optionally supports SSE2/SSE4.1 for acceleration.\r\r\n\r\r\n *  Rapidjson is self-contained. It does not depend on external libraries such as BOOST. It even does not depend on STL.\r\r\n\r\r\n  *  Rapidjson is memory friendly. Each JSON value occupies exactly 16/20 bytes for most 32/64-bit machines (excluding text string). By default it uses a fast memory allocator, and the parser allocates memory compactly during parsing.",
      "supplier": {
        "url": [
          "http://rapidjson.org/"
        ]
      }
    },
    {
      "name": "tomlplusplus",
      "bom-ref": "tomlplusplus",
      "type": "library",
      "version": "v3.4.0",
      "copyright": "Copyright (c) 2013-2022 Niels Lohmann <http://nlohmann.me>\nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2019-2020 Mark Gillard <mark.gillard@outlook.com.au>\nCopyright (c) 2017, 2022 Two Blue Cubes Ltd.\nCopyright (c) Catch2 Authors",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/marzer/tomlplusplus@v3.4.0",
      "description": "Header-only TOML parser and serializer for modern C++.",
      "supplier": {
        "url": [
          "https://marzer.github.io/tomlplusplus/"
        ]
      }
    },
    {
      "name": "paullouisageneau/libdatachannel",
      "bom-ref": "paullouisageneau/libdatachannel",
      "type": "library",
      "version": "v0.20.3",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Mozilla Public License 2.0"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/paullouisageneau/libdatachannel"
        ]
      }
    },
    {
      "name": "Time Zone Database",
      "bom-ref": "Time Zone Database",
      "type": "library",
      "version": "2022b",
      "licenses": [
        {
          "license": {
            "name": "Public Domain"
          }
        }
      ],
      "purl": "pkg:github/eggert/tz@2022b",
      "description": "This package contains data files with rules for various timezones around\r\nthe world.",
      "supplier": {
        "url": [
          "http://www.iana.org/time-zones"
        ]
      }
    },
    {
      "name": "rampantpixels/mdns",
      "bom-ref": "rampantpixels/mdns",
      "type": "library",
      "version": "20240406-snapshot-b52326cb",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "The Unlicense"
          }
        }
      ],
      "purl": "pkg:github/rampantpixels/mdns@b52326cb5da51ae56292a99d4e492eeba319fc0c",
      "supplier": {
        "url": [
          "https://github.com/rampantpixels/mdns"
        ]
      }
    },
    {
      "name": "log4cplus - Logging Framework for C++",
      "bom-ref": "log4cplus - Logging Framework for C++",
      "type": "library",
      "version": "2.1.2",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2013 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2019, 2021-2024 Free Software Foundation, Inc.\nCopyright (c) 2004-2019, 2021, 2023-2024 Bootstrap Authors\nCopyright (c) 2009-2017, Vaclav Haisman.\nCopyright (c) 2015-2017 RWTH Aachen University, Federal Republic of Germany\nCopyright (c) 2008-2009 Alan W. Irwin\nCopyright (c) 2008-2009 Andrew Collier\nCopyright (c) 2008 Benjamin Kosnik <bkoz@redhat.com>\nCopyright (c) 2008 Guido U. Draheim <guidod@gmx.de>\nCopyright (c) 2008 Lars Brinkhoff <lars@nocrew.org>\nCopyright (c) 2008 Ludovic Courtes <ludo@chbouib.org> \nCopyright (c) 2008 Matteo Frigo\nCopyright (c) 2008 Rafael Laboissiere <rafael@laboissiere.net>\nCopyright (c) 2008 Sebastian Huber <sebastian-huber@web.de>\nCopyright (c) 2008 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2009 Horst Knorr <hk_classes@knoda.org>\nCopyright (c) 2009 Matteo Settenvini <matteo@member.fsf.org>\nCopyright (c) 2009 Rafael Laboissiere <rafael@laboissiere.net>\nCopyright (c) 2009 Sebastian Huber <sebastian-huber@web.de>\nCopyright (c) 2010 Rhys Ulerich <rhys.ulerich@gmail.com>\nCopyright (c) 2011 Daniel Richard G. <skunk@iSKUNK.ORG>\nCopyright (c) 2011 Maarten Bosmans <mkbosmans@gmail.com>\nCopyright (c) 2011 Murray Cumming <murrayc@openismus.com>\nCopyright (c) 2012, 2017 Two Blue Cubes Ltd. All rights reserved.\nCopyright (c) 2012 Zack Weinberg <zackw@panix.com>\nCopyright (c) 2012-2015 Jakob Progsch \nCopyright (c) 2013 Daniel Mullner <muellner@math.stanford.edu>\nCopyright (c) 2013 Gabriele Svelto <gabriele.svelto@gmail.com> \nCopyright (c) 2013 Roy Stogner <roystgnr@ices.utexas.edu>\nCopyright (c) 2014 Alexey Sokolov <sokolov@google.com> \nCopyright (c) 2014 Mike Frysinger <vapier@gentoo.org> \nCopyright (c) 2018 John Zaitseff <J.Zaitseff@zap.org.au>\nCopyright (c) 2018 Reini Urban <rurban@cpan.org>\nCopyright (c) 2021 Vincent Danjean <Vincent.Danjean@ens-lyon.org>\nCopyright (c) 1999-2017 Tad E. Smith\nCopyright (c) 2003-2017 Christopher R. Bailey\nCopyright (c) 2003-2017 Michael CATANZARITI\nCopyright (c) 2003-2017 Odalio SARL\nCopyright (c) 2010-2017 Vaclav Haisman\nCopyright (c) 2010-2012 Two Blue Cubes Ltd. \nCopyright (c) 2011-2017 Jens Rehsack\nCopyright (c) 2012, 2015 Martin Moene. \nCopyright (c) 2012-2017 Siva Chandran P\nCopyright (c) 2013-2019, 2022 Two Blue Cubes Ltd. \nCopyright (c) 2017 Justin R. Wilson. \nCopyright (c) Social Point SL. \nCopyright (c) 1999--2009 Contributors to log4cplus project. \nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "log4cplus is a simple to use C++ logging API providing thread-safe, flexible, and arbitrarily granular control over log management and configuration.  It is modeled after the Java log4j API.",
      "supplier": {
        "url": [
          "https://sourceforge.net/projects/log4cplus"
        ]
      }
    },
    {
      "name": "OpenSSL",
      "bom-ref": "OpenSSL",
      "type": "library",
      "version": "3.5.5",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:deb/debian/openssl@3.5.5-1~deb13u1",
      "description": "OpenSSL is a robust, commercial-grade, and full-featured toolkit for the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. It is also a general-purpose cryptography library.\r\r\n\r\r\nOpenSSL is licensed under an Apache-style license, which basically means that you are free to get and use it for commercial and non-commercial purposes subject to some simple license conditions.",
      "supplier": {
        "url": [
          "https://www.openssl.org"
        ]
      }
    },
    {
      "name": "Boost C++ Libraries - boost",
      "bom-ref": "Boost C++ Libraries - boost",
      "type": "library",
      "version": "1.83.0",
      "copyright": "Copyright (c) 1995-2017 Jean-loup Gailly\nCopyright (c) 1995-2022 Jean-loup Gailly and Mark Adler\nCopyright (c) 2006 Douglas Gregor <doug.gregor@gmail.com>\nCopyright (c) 2013-2023 Niall Douglas <http://www.nedproductions.biz/> \nCopyright (c) 2002 Martin Ecker\nCopyright (c) 2002 Rani Sharoni (rani_sharoni@hotmail.com) and Robert Ramey\nCopyright (c) 2002 Robert Ramey - http://www.rrsd.com\nCopyright (c) 2002 Vahan Margaryan\nCopyright (c) 2002, 2003 Beman Dawes Boost.Filesystem\nCopyright (c) 2002-14 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2002-2008 Robert Ramey and Joaquin M Lopez Munoz\nCopyright (c) 2002-2008, Fernando Luis Cacciola Carballal.\nCopyright (c) 2002-2009 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2002-2009 Vladimir Prus and Robert Ramey.\nCopyright (c) 2002-2009 Vladimir Prus, Robert Ramey and Takatoshi Kondo.\nCopyright (c) 2002-2014 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2002-2020 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2002-4 Pavel Vozenilek .\nCopyright (c) 2002-4 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2002-7 Robert Ramey - http://www.rrsd.com \nCopyright (c) 2003 Fernando Luis Cacciola Carballal.\nCopyright (c) 2003-2007 Jonathan Turkanis\nCopyright (c) 2003-4 Pavel Vozenilek and Robert Ramey - http://www.rrsd.com.\nCopyright (c) 2004, 2006 Douglas Gregor and Jeremy Siek\nCopyright (c) 2004 Pavel Vozenilek\nCopyright (c) 2004 Robert Ramey and Martin Ecker\nCopyright (c) 2004-2007 Jonathan Turkanis\nCopyright (c) 2004-2009 Robert Ramey, Martin Ecker and Takatoshi Kondo\nCopyright (c) 2005 Daniel Egloff, Eric Niebler\nCopyright (c) 2005 John Maddock\nCopyright (c) 2005 Robert Ramey - http://www.rrsd.com\nCopyright (c) 2005 The Trustees of Indiana University.\nCopyright (c) 2005-2006 Matthias Troyer\nCopyright (c) 2005-2007 Jonathan Turkanis\nCopyright (c) 2005-2007 Matthias Troyer\nCopyright (c) 2006 Eric Niebler, Olivier Gygi\nCopyright (c) 2007 David Deakins\nCopyright (c) 2007 Jonathan Turkanis\nCopyright (c) 2007-2008 Matthias Troyer\nCopyright (c) 2007 Robert Ramey - http://www.rrsd.com .\nCopyright (c) 2007 Roland Schwarz\nCopyright (c) 2007, 2008 Steven Watanabe, Joseph Gauterin, Niels Dekker\nCopyright (c) 2007-2009 Andrew Sutton\nCopyright (c) 2005-2010 Anthony Williams\nCopyright (c) 2008 CodeRage, LLC (turkanis at coderage dot com)\nCopyright (c) 2008 Joaquin M Lopez Munoz.",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "purl": "pkg:rpm/centos/boost@1.83.0-5.el10?arch=aarch64",
      "description": "Boost provides free portable peer-reviewed C++ libraries. The emphasis is on portable libraries which work well with the C++ Standard Library. See http://www.boost.org",
      "supplier": {
        "url": [
          "https://www.boost.org/"
        ]
      }
    },
    {
      "name": "kea",
      "bom-ref": "kea",
      "type": "library",
      "version": "3.0.0",
      "copyright": "Copyright (c) 2002 Rice University\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995, 1996, 1997, 1998, and 1999 WIDE Project. \nCopyright (c) 1995-2000 by Network Associates, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2001 Nominum, Inc.\nCopyright (c) 1996-2021 Internet Systems Consortium, Inc.\nCopyright (c) 2000, 2001 Nominum, Inc.\nCopyright (c) 2001 Jeff McNeil <jeff@snapcase.g-rock.net> \nCopyright (c) 2002 Nuno M. Rodrigues. \nCopyright (c) 2002 Stichting NLnet, Netherlands, stichting@nlnet.nl.\nCopyright (c) 2008-2015 Red Hat\nCopyright (c) 2012 Vadim Goncharov, Russia, vadim_nuclight@mail.ru.\nCopyright (c) 1982, 1983, 1986, 1989, 1993 The Regents of the University of California.\nCopyright (c) 1996, David Mazieres <dm@uun.org>\nCopyright (c) 1996-2001, PostgreSQL Global Development Group\nCopyright (c) 1997 - 2003 Kungliga Tekniska H (Royal Institute of Technology, Stockholm, Sweden).\nCopyright (c) 1997, 1998 The NetBSD Foundation, Inc. \nCopyright (c) 1998 Doug Rabson\nCopyright (c) 2000,2001,2002 Japan Network Information Center\nCopyright (c) 2000-2001 The OpenSSL Project\nCopyright (c) 2008, Damien Miller <djm@openbsd.org>\nCopyright (c) 2009 Filippo Giunchedi <filippo@esaurito.net>\nCopyright (c) 2011 Russ Allbery <rra@stanford.edu>\nCopyright (c) 2011 The Board of Trustees of the Leland Stanford Junior University\nCopyright (c) 2012-2014 Daniel J. Bernstein <djb@cr.yp.to> \nCopyright (c) 2012-2016 Jean-Philippe Aumasson <jeanphilippe.aumasson@gmail.com>\nCopyright (c) 2013 Bastien ROUCARIES\nCopyright (c) 2013, Markus Friedl <markus@openbsd.org>\nCopyright (c) 2013-2014, Farsight Security, Inc.\nCopyright (c) 2014 William B. \nCopyright (c) 1985, 1987, 2000 by Stephen L. Moshier\nCopyright (c) 2000 Aaron D. Gifford.\nCopyright (c) 2006 Andreas Jellinghaus\nCopyright (c) 2006, 2007 g10 Code GmbH\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "description": "DHCP implementation from Internet Systems Consortium, Inc.\r\nthat features fully functional DHCPv4, DHCPv6 and Dynamic DNS servers.\r\nBoth DHCP servers fully support server discovery,\r\naddress assignment, renewal, rebinding and release. The DHCPv6\r\nserver supports prefix delegation. Both servers support DNS Update\r\nmechanism, using stand-alone DDNS daemon.",
      "supplier": {
        "url": [
          "http://kea.isc.org"
        ]
      }
    },
    {
      "name": "dav1d",
      "bom-ref": "dav1d",
      "type": "library",
      "version": "1.5.1",
      "copyright": "Copyright (c) 2005-2024 x264 project\nCopyright (c) 2000 The NetBSD Foundation, Inc.\nCopyright (c) 2002 Todd C. Miller <Todd.Miller@courtesan.com>\nCopyright (c) 2017-2021, The rav1e contributors\nCopyright (c) 2020-2021,2023-2024 Nathan Egge\nCopyright (c) 2018, Janne Grunau \nCopyright (c) 2018, Niklas Haas\nCopyright (c) 2018,  2020-2023 Two Orioles, LLC\nCopyright (c) 2018-2023 VideoLAN and dav1d authors\nCopyright (c) 2018-2019, 2021 Two Orioles, LLC \nCopyright (c) 2019, James Almer <jamrial@gmail.com> \nCopyright (c) 2021, Martin Storsjo\nCopyright (c) 2023, Luca Barbato\nCopyright (c) 2024, Bogdan Gligorijevic \nCopyright (c) 2024, Loongson Technology Corporation Limited\nCopyright (c) 2000 The NetBSD Foundation Inc\nCopyright (c) 2018-2024 Dylan A",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/dav1d@1.5.1-1",
      "description": "dav1d is a new AV1 cross-platform Decoder, open-source, and focused on speed\r\nand correctness.",
      "supplier": {
        "url": [
          "https://www.videolan.org/projects/dav1d.html"
        ]
      }
    },
    {
      "name": "dhcping",
      "bom-ref": "dhcping",
      "type": "library",
      "version": "1.2",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/dhcping@1.2-6",
      "description": "DHCP Daemon Ping Program\r\nThis small tool provides an opportunity for a system administrator to\r\nperform a DHCP request to find out if a DHCP server is still running.",
      "supplier": {
        "url": [
          "https://www.mavetju.org/unix/general.php"
        ]
      }
    },
    {
      "name": "nginx",
      "bom-ref": "nginx",
      "type": "library",
      "version": "1.26.3",
      "copyright": "Copyright (c) 2002-2021 Igor Sysoev\nCopyright (c) 2008 Manlio Perillo (manlio.perillo@gmail.com)\nCopyright (c) 2011-2024 Nginx, Inc. \nCopyright (c) 2015 Vlad Krasnov \nCopyright (c) Austin Appleby \nCopyright (c) Igor Sysoev\nCopyright (c) Manlio Perillo (manlio.perillo@gmail.com) \nCopyright (c) Maxim Dounin\nCopyright (c) Nginx, Inc.\nCopyright (c) Pavel Pautov\nCopyright (c) Roman Arutyunyan\nCopyright (c) Ruslan Ermilov\nCopyright (c) 2009-2010 Unbit S.a.s. \nCopyright (c) Valentin V. Bartenev\nCopyright (c) 2015, Thomas Ward <teward@ubuntu.com> '\nCopyright (c) 2005, Andrei Nigmatulin\nCopyright (c) 2015, Michael Lustfield <michael@lustfield.net>\nCopyright (c) 2015, Thomas Ward <teward@ubuntu.com>\nCopyright (c) 2016, Christos Trochalakis <ctrochalakis@debian.org>\nCopyright (c) 2022, Miao Wang\nCopyright (c) 2022-2025, Jan Moj\nCopyright (c) Austin Appleby\nCopyright (c) Nginx, Inc.\nCopyright (c) Pavel Pautov\nCopyright (c) 2022 Miao Wang",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "description": "NGINX [Engine-X] is an HTTP(S) server, HTTP(S) reverse proxy and IMAP/POP3 proxy server written by Igor Sysoev. It has been running on many heavily loaded sites, including Facebook, Zappos, Groupon, LivingSocial, Hulu, TechCrunch, Dropbox, Tumblr and WordPress.",
      "supplier": {
        "url": [
          "http://nginx.org/"
        ]
      }
    },
    {
      "name": "nginx-module-http-auth-digest",
      "bom-ref": "nginx-module-http-auth-digest",
      "type": "library",
      "version": "0.0.0+git23032018.cd86418",
      "copyright": "Copyright (c) igor sysoev\nCopyright (c) samizdat drafting co.\nCopyright (c) 2011 Samizdat Drafting Co. \nCopyright (c) Erik Dubbelboer",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:rpm/opensuse/nginx-module-http-auth-digest@0.0.0%2Bgit23032018.cd86418-2.5?arch=armv6hl",
      "description": "The ngx_http_auth_digest module supplements Nginx's built-in Basic\r\nAuthentication module by providing support for RFC 2617 Digest Authentication\r\n The module is currently functional but has only been tested and reviewed by\r\nits author. And given that this is security code, one set of eyes is almost\r\ncertainly insufficient to guarantee that it's 100% correct. Until a few bug\r\nreports come in and some of the \u2018unknown unknowns\u2019 in the code are flushed out,\r\nconsider this module an \u2018alpha\u2019 and treat it with the appropriate amount of\r\nskepticism.",
      "supplier": {
        "url": [
          "https://github.com/atomx/nginx-http-auth-digest"
        ]
      }
    },
    {
      "name": "pthreadpool",
      "bom-ref": "pthreadpool",
      "type": "library",
      "version": "0.0~git20201005.fa75e65",
      "copyright": "Copyright (c) 2015-2017 Georgia Institute of Technology \nCopyright (c) 2017 Facebook Inc.\nCopyright (c) 2019 Google LLC\nCopyright (c) 2020 Mo Zhou <lumin@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/pthreadpool@0.0~git20201005.fa75e65-2",
      "supplier": {
        "url": [
          "https://github.com/Maratyszcza/pthreadpool"
        ]
      }
    },
    {
      "name": "tfblib",
      "bom-ref": "tfblib",
      "type": "library",
      "version": "0.1.1",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:apk/alpine/tfblib@0.1.1-r0?arch=aarch64",
      "description": "A Tiny Linux Framebuffer Library",
      "supplier": {
        "url": [
          "https://github.com/vvaltchev/tfblib"
        ]
      }
    },
    {
      "name": "gperftools",
      "bom-ref": "gperftools",
      "type": "library",
      "version": "2.9.1",
      "copyright": "Copyright (c) 2000,2003-2013 Google Inc.\nCopyright (c) 2008 Benjamin Kosnik <bkoz@redhat.com>\nCopyright (c) 2012 Zack Weinberg <zackw@panix.com>\nCopyright (c) 2013 Roy Stogner <roystgnr@ices.utexas.edu>\nCopyright (c) 2014, Linaro \nCopyright (c) 2014, gperftools Contributors \nCopyright (c) 2015 David King <amigadave@amigadave.com>\nCopyright (c) 2015 Moritz Klammler <moritz@klammler.eu>\nCopyright (c) 2015 Paul Norman <penorman@mac.com>\nCopyright (c) 2015 Philip Withnall <philip.withnall@collabora.co.uk>\nCopyright (c) 2016, 2018 Krzesimir Nowak <qdlacz@gmail.com> \nCopyright (c) 2018 Laszlo Boszormenyi (GCS) <gcs@debian.org>\nCopyright (c) 2011-2016 Daigo Moriwaki <daigo@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "description": "These tools are for use by developers so that they can create more robust applications. Especially of use to those developing multi-threaded applications in C++ with templates. Includes TCMalloc, heap-checker, heap-profiler and cpu-profiler. \r\n\r\nRecent news: \r\n\r\n20 January 2010I've just released perftools 1.5 \r\n\r\nThis version has a slew of changes, leading to somewhat faster performance and improvements in portability.  It adds features like ITIMER_REAL support to the cpu profiler, and tc_set_new_mode to mimic the windows function of the same name. Full details are in the Changelog. \r\n\r\n11 September 2009I've just released perftools 1.4 \r\n\r\nThe major change this release is the addition of a debugging malloc library! If you link with libtcmalloc_debug.so instead of libtcmalloc.so (and likewise for the minimal variants) you'll get a debugging malloc, which will catch double-frees, writes to freed data, free/delete and delete/delete[] mismatches, and even (optionally) writes past the end of an allocated block. \r\n\r\nWe plan to do more with this library in the future, including supporting it on Windows, and adding the ability to use the debugging library with your default malloc in addition to using it with tcmalloc. \r\n\r\nThere are also the usual complement of bug fixes, documented in the ChangeLog, and a few minor user-tunable knobs added to components like the system allocator. \r\n\r\n9 June 2009I've just released perftools 1.3 \r\n\r\nLike 1.2, this has a variety of bug fixes, especially related to the Windows build. One of my bugfixes is to undo the weird ld -r fix to .a files that I introduced in perftools 1.2: it caused problems on too many platforms.  I've reverted back to normal .a files.  To work around the original problem that prompted the ld -r fix, I now provide libtcmalloc_and_profiler.a, for folks who want to link in both. \r\n\r\nThe most interesting API change is that I now not only override malloc/free/etc, I also expose them via a unique set of symbols: tc_malloc/tc_free/etc.  This enables clients to write their own memory wrappers that use tcmalloc: \r\n\r\n   void* malloc(size_t size) { void* r = tc_malloc(size); Log(r); return r; }17 April 2009I've just released perftools 1.2. \r\n\r\nThis is mostly a bugfix release.  The major change is internal: I have a new system for creating packages, which allows me to create 64-bit packages.  (I still don't do that for perftools, because there is still no great 64-bit solution, with libunwind still giving problems and --disable-frame-pointers not practical in every environment.) \r\n\r\nAnother interesting change involves Windows: a new patch allows users to choose to override malloc/free/etc on Windows rather than patching, as is done now.  This can be used to create custom CRTs. \r\n\r\nMy fix for this bug involving static linking ended up being to make libtcmalloc.a and libperftools.a a big .o file, rather than a true ar archive.  This should not yield any problems in practice -- in fact, it should be better, since the heap profiler, leak checker, and cpu profiler will now all work even with the static libraries -- but if you find it does, please file a bug report. \r\n\r\nFinally, the profile_handler_unittest provided in the perftools testsuite (new in this release) is failing on FreeBSD.  The end-to-end test that uses the profile-handler is passing, so I suspect the problem may be with the test, not the perftools code itself.  However, I do not know enough about how itimers work on FreeBSD to be able to debug it.  If you can figure it out, please let me know!  \r\n\r\n11 March 2009I've just released perftools 1.1! \r\n\r\nIt has many changes since perftools 1.0 including \r\n\r\nFaster performance due to dynamically sized thread caches Better heap-sampling for more realistic profiles Improved support on Windows (MSVC 7.1 and cygwin) Better stacktraces in linux (using VDSO) Many bug fixes and feature requests Note: if you use the CPU-profiler with applications that fork without doing an exec right afterwards, please see the README.  Recent testing has shown that profiles are unreliable in that case.  The problem has existed since the first release of perftools.  We expect to have a fix for perftools 1.2.  For more details, see issue 105. \r\n\r\nEveryone who uses perftools 1.0 is encouraged to upgrade to perftools 1.1.  If you see any problems with the new release, please file a bug report at http://code.google.com/p/google-perftools/issues/list. \r\n\r\nEnjoy!",
      "supplier": {
        "url": [
          "https://github.com/gperftools/gperftools"
        ]
      }
    },
    {
      "name": "Info-Zip",
      "bom-ref": "Info-Zip",
      "type": "library",
      "version": "6.0",
      "copyright": "Copyright (c) 1997 Chris Herborth (chrish@qnx.com)\nCopyright (c) 2004 Ruslan Nickolaev (nruslan@hotbox.ru) - AtheOS port\nCopyright (c) 1990-1992 Mark Adler, Richard B. Wales, Jean-loup Gailly, Kai Uwe Rommel and Igor Mandrichenko.\nCopyright (c) 1995 Mark Adler\nCopyright (c) 1990 US All rights reserved.\nCopyright (c) 1990-2009 Info-ZIP.\nCopyright (c) 1992-93 Igor Mandrichenko.\nCopyright (c) 1994 Greg Roelofs.\nCopyright (c) 1996 Mike White.\nCopyright (c) 1996 Scott Field (dedicated to Info-Zip group)\nCopyright (c) 1989 Samuel H. Smith\nCopyright (c) 1992-1998 Apple Computer, Inc.\nCopyright (c) 1994, 1995 Greg Roelofs.\nCopyright (c) 1997 Christopher Evans (cevans@poppybank.com)\nCopyright (c) 1995 Jim Luther",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "cpe": "cpe:2.3:a:unzip_project:unzip:6.0:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/unzip@6.0-4%2Bdeb6u2",
      "supplier": {
        "url": [
          "http://infozip.sourceforge.net/"
        ]
      }
    },
    {
      "name": "libevent",
      "bom-ref": "libevent",
      "type": "library",
      "version": "2.1.12-stable",
      "copyright": "Copyright (c) 2002 Christopher Clark\nCopyright (c) 1987, 1993-1994, 1996, The Regents of the University of California.\nCopyright (c) 1992-1996, 1998-2012, Free Software Foundation, Inc.\nCopyright (c) 1993, The Regents of the University of California.\nCopyright (c) 1994-2018, Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2018, Free Software Foundation, Inc.\nCopyright (c) 1998, Todd C. Miller <Todd.Miller@courtesan.com>\nCopyright (c) 1998-2012, Daniel Stenberg, <daniel@haxx.se>, et al.\nCopyright (c) 2000-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2000-2011, Insight Software Consortium\nCopyright (c) 2001-2007, Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2002, Christopher Clark\nCopyright (c) 2002-2005 Simon Law <sfllaw@debian.org>\nCopyright (c) 2004-2005, 2007, 2009, 2011-2018, Free Software\nCopyright (c) 2006, Maxim Yegorushkin <maxim.yegorushkin@gmail.com>\nCopyright (c) 2007, Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2009, Michihiro NAKAJIMA\nCopyright (c) 2009-2012, Nick Mathewson and Niels Provos\nCopyright (c) 2010, Chris Davis, Niels Provos, and Nick Mathewson\nCopyright (c) 2012, Ross Lagerwall <rosslagerwall@gmail.com>\nCopyright (c) 2012, iSEC Partners\nCopyright (c) 1994 X Consortium\nCopyright (c) 1996-2001, 2003-2018 Free Software Foundation, Inc.\nCopyright (c) 1997-2020 Free Software Foundation, Inc.\nCopyright (c) 1998 - 2012, Daniel Stenberg, <daniel@haxx.se>, et al.\nCopyright (c) 1999-2020 Free Software Foundation, Inc.\nCopyright (c) 2004, 2011-2018 Free Software Foundation, Inc.\nCopyright (c) 2004-2005, 2007-2009, 2011-2018 Free Software Foundation, Inc.\nCopyright (c) 2004-2018 Bootstrap Authors\nCopyright (c) 2004-2020 Free Software Foundation, Inc.\nCopyright (c) 2010-2018 Bootstrap Authors\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2012, iSEC Partners.\nCopyright (c) 2014 Free Software Foundation, Inc.\nCopyright (c) 1987, 1993, 1994, 1995,1996 The Regents of the University of California.\nCopyright (c) 1991, 1993 The Regents of the University of California. \nCopyright (c) 1996 - 2013, Daniel Stenberg, <daniel@haxx.se>.\nCopyright (c) 1996, David Mazieres <dm@uun.org>\nCopyright (c) 1998 Todd C. Miller <Todd.Miller@courtesan.com>\nCopyright (c) 2000 Dug Song <dugsong@monkey.org>\nCopyright (c) 2000-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2002 Christopher Clark\nCopyright (c) 2002, Christopher Clark\nCopyright (c) 2002-2006 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2002-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2003 Michael A. Davis <mike@datanerds.net>\nCopyright (c) 2003-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2003-2009 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2005-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2005-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2006 Maxim Yegorushkin <maxim.yegorushkin@gmail.com>\nCopyright (c) 2006-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2007 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2007 Sun Microsystems\nCopyright (c) 2007 Sun Microsystems. All rights reserved.\nCopyright (c) 2007-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2007-2012 Niels Provos, Nick Mathewson\nCopyright (c) 2007-2013 Niels Provos and Nick Mathewson\nCopyright (c) 2008, Damien Miller <djm@openbsd.org>\nCopyright (c) 2008-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2008-2012 Niels Provos, Nick Mathewson\nCopyright (c) 2009 Oren Ben-Kiki <oren@ben-kiki.org>\nCopyright (c) 2009, Michihiro NAKAJIMA\nCopyright (c) 2009-2012 Nick Mathewson and Niels Provos\nCopyright (c) 2009-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2009-2012 Niels Provos, Nick Mathewson\nCopyright (c) 2010 BitTorrent, Inc.\nCopyright (c) 2010 Chris Davis, Niels Provos, and Nick Mathewson\nCopyright (c) 2010-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2012 Niels Provos and Nick Mathewson\nCopyright (c) 2012 Ross Lagerwall <rosslagerwall@gmail.com>\nCopyright (c) 2013 Niels Provos and Nick Mathewson\nCopyright (c) 2015 Olaf Mandel <olaf@mandel.name>\nCopyright (c) 2000-2007 Niels Provos\nCopyright (c) 2000-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2000-2009 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2000-2011 Insight Software Consortium\nCopyright (c) 2000-2013 Kitware, Inc.\nCopyright (c) 2001-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2002 Christopher Clark\nCopyright (c) 2002 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2003 Michael A. Davis <mike@datanerds.net>\nCopyright (c) 2003-2007 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2003-2009 Niels Provos <provos@citi.umich.edu>\nCopyright (c) 2005, Nick Mathewson\nCopyright (c) 2005-2012 Nick Mathewson\nCopyright (c) 2006-2007 Niels Provos\nCopyright (c) 2007-2012 Nick Mathewson and Niels Provos\nCopyright (c) 2007-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2007-2012 Niels Provos, Nick Mathewson\nCopyright (c) 2008-2012 Niels Provos and Nick Mathewson\nCopyright (c) 2009-2012 Nick Mathewson\nCopyright (c) 2009-2012 Niels Provos and Nick Mathewson\nCopyright (c) 1994-2018, Free Software Foundation, Inc.\nCopyright (c) 2002-2005 Simon Law <sfllaw@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/libevent@2.1.12-stable-10",
      "description": "The libevent API provides a mechanism to execute a callback function when a specific event occurs on a file descriptor or after a timeout has been reached. It is meant to replace the asynchronous event loop found in event-driven network servers.",
      "supplier": {
        "url": [
          "http://libevent.org/"
        ]
      }
    },
    {
      "name": "OpenSSH",
      "bom-ref": "OpenSSH",
      "type": "library",
      "version": "10.0p1",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1996-2021 Free Software Foundation, Inc.\nCopyright (c) 1999 WIDE Project. \nCopyright (c) 2000-2003 Damien Miller.\nCopyright (c) 2001-2008 Kees Cook\nCopyright (c) 1983, 1987, 1988, 1990-1993, 1995 The Regents of the University of California. \nCopyright (c) 1983, 1995-1997 Eric P. Allman\nCopyright (c) 1993 by Digital Equipment Corporation.\nCopyright (c) 1994-1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland\nCopyright (c) 1995, 1996-1999, 2008 Theo de Raadt\nCopyright (c) 1996, David Mazieres <dm@uun.org>\nCopyright (c) 1997 Kungliga Tekniska H\nCopyright (c) 1997-1998, 2004, 2008-2009 Todd C. Miller <Todd.Miller@courtesan.com> \nCopyright (c) 1997, 1998 The NetBSD Foundation, Inc.\nCopyright (c) 1999 Aaron Campbell\nCopyright (c) 1999 Dug Song\nCopyright (c) 1999 Markus Friedl\nCopyright (c) 1999 Niels Provos.\nCopyright (c) 1999 Niklas Hallqvist\nCopyright (c) 1999-2002 Markus Friedl\nCopyright (c) 1999-2004 Damien Miller\nCopyright (c) 1999-2006 Ted Krovetz\nCopyright (c) 2000 Andre Lucas\nCopyright (c) 2000 Ben Lindstrom\nCopyright (c) 2000 Denis Parker\nCopyright (c) 2000 Markus Friedl\nCopyright (c) 2000 Michael Stone\nCopyright (c) 2000 Niels Provos\nCopyright (c) 2000-2001 The NetBSD Foundation, Inc.\nCopyright (c) 2000-2003 Markus Friedl. \nCopyright (c) 2000, 2001, 2011, 2013 Corinna Vinschen <vinschen@redhat.com> \nCopyright (c) 2001 Eric Jackson <ericj@monkey.org>\nCopyright (c) 2001 Gert Doering\nCopyright (c) 2001 Jakob Schlyter",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/openssh@10.0p1-7%2Bdeb13u1?epoch=1",
      "description": "OpenSSH is a free SSH/SecSH protocol suite providing encryption for network services like remote login or remote file transfer.",
      "supplier": {
        "url": [
          "http://www.openssh.com/"
        ]
      }
    },
    {
      "name": "PCRE",
      "bom-ref": "PCRE",
      "type": "library",
      "version": "8.45",
      "copyright": "Copyright (c) 2001 Alexander Tokarev <dwalin@dwalin.ru>\nCopyright (c) 2001 Peter S. Voronov aka Chem O\nCopyright (c) 1994 X Consortium\nCopyright (c) 1996-2020 Free Software Foundation, Inc.\nCopyright (c) 2004-2018 Bootstrap Authors\nCopyright (c) 1997-2021 University of Cambridge\nCopyright (c) 2001, Alexander Tokarev\nCopyright (c) 2005 - 2010, Google Inc. \nCopyright (c) 2008 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2011 Daniel Richard G. <skunk@iSKUNK.ORG>\nCopyright (c) 2003 and onwards Google Inc.\nCopyright (c) 2013-2013 Tilera Corporation(jiwang@tilera.com). \nCopyright (c) Zoltan Herczeg (hzmester@freemail.hu).\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>\nCopyright (c) 2009-2021 Zoltan Herczeg",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "description": "The PCRE (Perl Compatible Regular Expressions) library is a set of functions that implement regular expression pattern matching using the same syntax and semantics as Perl 5. PCRE has its own native API, as well as a set of wrapper functions that correspond to the POSIX regular expression API. The PCRE library is free, even for building commercial software.",
      "supplier": {
        "url": [
          "http://www.pcre.org/"
        ]
      }
    },
    {
      "name": "xdotool",
      "bom-ref": "xdotool",
      "type": "library",
      "version": "3.20160805.1",
      "copyright": "Copyright (c) 2007, 2008, 2009: Jordan Sissel. \nCopyright (c) 2007-2022 Daniel Kahn Gillmor <dkg@fifthhorseman.net>",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:deb/debian/xdotool@3.20160805.1-5?epoch=1",
      "description": "fake keyboard/mouse input, window management, and more",
      "supplier": {
        "url": [
          "https://github.com/jordansissel/xdotool"
        ]
      }
    },
    {
      "name": "freetype2-demos",
      "bom-ref": "freetype2-demos",
      "type": "library",
      "version": "2.11.1",
      "copyright": "Copyright (c) 1990, 1994, 1998 The Open Group\nCopyright (c) 1991-2021 Stichting Mathematisch Centrum\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-2002 Jean-loup Gailly\nCopyright (c) 1995-2002 Jean-loup Gailly and Mark Adler\nCopyright (c) 1995-2002 Mark Adler\nCopyright (c) 1996-2019 Christoph Lameter <clameter@waterf.org>\nCopyright (c) 1996-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Just van Rossum, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Nikhil Ramakrishnan, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Suzuki Toshiya, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1999-2021 Antoine Leca, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1999-2021 Just van Rossum, Antoine Leca,\nCopyright (c) 1999-2021 The FreeType Development Team\nCopyright (c) 2000 Computing Research Labs, New Mexico State University\nCopyright (c) 2000-2014 Francesco Zappa Nardelli\nCopyright (c) 2001-2021 Michael Pfeiffer\nCopyright (c) 2002-2021 David Turner\nCopyright (c) 2002-2021 Roberto Alameda\nCopyright (c) 2003-2021 Masatake Yamato, Red Hat K.K.\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>\nCopyright (c) 2004-2021 Albert Chin-A-Young\nCopyright (c) 2004-2021 David Turner, Robert Wilhelm, Werner Lemberg and George Williams\nCopyright (c) 2004-2021 Masatake Yamato, Redhat K.K.\nCopyright (c) 2004-2021 Suzuki Toshiya, Masatake Yamato, Red Hat K.K.,\nCopyright (c) 2005, 2007, 2008, 2013 George Williams\nCopyright (c) 2005-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2005-2021 Werner Lemberg and Detlef W\nCopyright (c) 2006-2014 Adobe Systems Incorporated\nCopyright (c) 2007-2021 Derek Clegg and Michael Toftdal\nCopyright (c) 2007-2021 Rahul Bhalerao\nCopyright (c) 2008 Steven G. Johnson\nCopyright (c) 2008 Tim Toolan\nCopyright (c) 2008-2021 David Turner, Robert Wilhelm, Werner Lemberg and Suzuki Toshiya\nCopyright (c) 2009 Francesco Salvestrini\nCopyright (c) 2009-2021 Oran Agra and Mickey Gabel\nCopyright (c) 2010-2021 Joel Klinghed\nCopyright (c) 2012 Intel Corporation\nCopyright (c) 2013-2021 Google, Inc.\nCopyright (c) 2015-2021 Werner Lemberg\nCopyright (c) 2016-2018 Static Jobs LLC\nCopyright (c) 2018-2021 Armin Hasitzka, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2018-2021 David Turner, Robert Wilhelm, Dominik R\nCopyright (c) 2019 nyorain\nCopyright (c) 2021 David Turner, Robert Wilhelm, Werner Lemberg and Anuj Verma\nCopyright (c) 2000 by Francesco Zappa Nardelli\nCopyright (c) 2016-2021 by Werner Lemberg.\n",
      "licenses": [
        {
          "license": {
            "name": "Freetype Project License"
          }
        }
      ],
      "purl": "pkg:deb/debian/freetype@2.11.1%2Bdfsg-1",
      "description": "FreeType 2 demonstration programs\r\nThis package contains some demonstration programs and utilities\r\nwhich showcase the features of the FreeType 2 font engine.",
      "supplier": {
        "url": [
          "http://www.freetype.org"
        ]
      }
    },
    {
      "name": "The FreeType Project",
      "bom-ref": "The FreeType Project",
      "type": "library",
      "version": "2.11.1",
      "copyright": "Copyright (c) 1990, 1994, 1998 The Open Group\nCopyright (c) 1991-2021 Stichting Mathematisch Centrum\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-2002 Jean-loup Gailly\nCopyright (c) 1995-2002 Jean-loup Gailly and Mark Adler\nCopyright (c) 1995-2002 Mark Adler\nCopyright (c) 1996-2019 Christoph Lameter <clameter@waterf.org>\nCopyright (c) 1996-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Just van Rossum, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Nikhil Ramakrishnan, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Suzuki Toshiya, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1999-2021 Antoine Leca, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1999-2021 Just van Rossum, Antoine Leca,\nCopyright (c) 1999-2021 The FreeType Development Team\nCopyright (c) 2000 Computing Research Labs, New Mexico State University\nCopyright (c) 2000-2014 Francesco Zappa Nardelli\nCopyright (c) 2001-2021 Michael Pfeiffer\nCopyright (c) 2002-2021 David Turner\nCopyright (c) 2002-2021 Roberto Alameda\nCopyright (c) 2003-2021 Masatake Yamato, Red Hat K.K.\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>\nCopyright (c) 2004-2021 Albert Chin-A-Young\nCopyright (c) 2004-2021 David Turner, Robert Wilhelm, Werner Lemberg and George Williams\nCopyright (c) 2004-2021 Masatake Yamato, Redhat K.K.\nCopyright (c) 2004-2021 Suzuki Toshiya, Masatake Yamato, Red Hat K.K.,\nCopyright (c) 2005, 2007, 2008, 2013 George Williams\nCopyright (c) 2005-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2005-2021 Werner Lemberg and Detlef W\nCopyright (c) 2006-2014 Adobe Systems Incorporated\nCopyright (c) 2007-2021 Derek Clegg and Michael Toftdal\nCopyright (c) 2007-2021 Rahul Bhalerao\nCopyright (c) 2008 Steven G. Johnson\nCopyright (c) 2008 Tim Toolan\nCopyright (c) 2008-2021 David Turner, Robert Wilhelm, Werner Lemberg and Suzuki Toshiya\nCopyright (c) 2009 Francesco Salvestrini\nCopyright (c) 2009-2021 Oran Agra and Mickey Gabel\nCopyright (c) 2010-2021 Joel Klinghed\nCopyright (c) 2012 Intel Corporation\nCopyright (c) 2013-2021 Google, Inc.\nCopyright (c) 2015-2021 Werner Lemberg\nCopyright (c) 2016-2018 Static Jobs LLC\nCopyright (c) 2018-2021 Armin Hasitzka, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2018-2021 David Turner, Robert Wilhelm, Dominik R\nCopyright (c) 2019 nyorain\nCopyright (c) 2021 David Turner, Robert Wilhelm, Werner Lemberg and Anuj Verma\nCopyright (c) 2000 by Francesco Zappa Nardelli\nCopyright (c) 2016-2021 by Werner Lemberg.\nCopyright (c) 2007-2021 by * David Turner, Robert Wilhelm, and Werner Lemberg.\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2010-2021 by Joel Klinghed.\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2014 Free Software Foundation, Inc.\nCopyright (c) 2018-2021 by * David Turner, Robert Wilhelm, and Werner Lemberg. \nCopyright (c) 2018-2021 by David Turner, Robert Wilhelm, Dominik R\u00F6ttsches, and Werner Lemberg.\nCopyright (c) 2001 Alexander Peslyak\nCopyright (c) 2008 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2008 Tim Toolan <toolan@ele.uri.edu>\nCopyright (c) 2009 Francesco Salvestrini <salvestrini@users.sourceforge.net>\nCopyright (c) 2011 Daniel Richard G. <skunk@iSKUNK.ORG>\nCopyright (c) 2012, Intel Corporation\nCopyright (c) 2016-2018 Static Jobs LLC\nCopyright (c) 2019 Marc Stevens <marc.stevens@cwi.nl>\nCopyright (c) 2019 Sony Interactive Entertainment Inc.\nCopyright (c) 2019 nyorain\nCopyright (c) 1990, 1994, 1998 The Open Group\nCopyright (c) 1995-2002 Mark Adler\nCopyright (c) 1996-2002, 2006 by David Turner, Robert Wilhelm, and Werner Lemberg .\nCopyright (c) 2000 Computing Research Labs, New Mexico State University\nCopyright (c) 2001-2004, 2011 Francesco Zappa Nardelli\nCopyright (c) 2003 Huw D M Davies for Codeweavers\nCopyright (c) 2006-2013 Adobe Systems Incorporated.\nCopyright (c) 2007 Dmitry Timoshkov for Codeweavers\nCopyright (c) 2007-2014 Adobe Systems Incorporated.\nCopyright (c) 2010-2019 by Joel Klinghed.\nCopyright (c) 2013 by Google, Inc.\nCopyright (c) 2013-2014 Adobe Systems Incorporated.\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 1996-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 1996-2021 Just van Rossum, David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2004-2021 Masatake Yamato, Redhat K.K.\nCopyright (c) 2005-2021 David Turner, Robert Wilhelm and Werner Lemberg\nCopyright (c) 2007-2021 Rahul Bhalerao\nCopyright (c) 2019 nyorain\nCopyright (c) 1996-2000 by David Turner, Robert Wilhelm, and Werner Lemberg\n",
      "licenses": [
        {
          "license": {
            "name": "Freetype Project License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:freetype:freetype:2.11.1:*:*:*:*:*:*:*",
      "purl": "pkg:deb/ubuntu/freetype@2.11.1%2Bdfsg-1ubuntu0.3",
      "description": "The FreeType 2 library",
      "supplier": {
        "url": [
          "http://www.freetype.org/"
        ]
      }
    },
    {
      "name": "busybox",
      "bom-ref": "busybox",
      "type": "library",
      "version": "1_37_0",
      "copyright": "Copyright (c) 1991, 1992 Linus Torvalds.\nCopyright (c) 1988-2007 Free Software Foundation, Inc.\nCopyright (c) 2003-2006 Rob Landley <rob@landley.net>\nCopyright (c) 2005-2006 Bernhard Reutner-Fischer <rep.nop@aon.at>\nCopyright (c) 2006-2009 Bernhard Reutner-Fischer <busybox@busybox.net>\nCopyright (c) 2006-2018 by Denys Vlasenko <vda.linux@gmail.com>\nCopyright (c) 1996, 1997 Linux International.\nCopyright (c) 2003-2008, 2010 Rob Landley <rob@landley.net>\nCopyright (c) 2008, BusyBox Team\nCopyright (c) 2001-2006 Vladimir Oleynik  <dzo@simtreas.ru>\nCopyright (c) 1999-2005 by Erik Andersen <andersen@codepoet.org>\nCopyright (c) 1997-2002 Richard Gooch\nCopyright (c) 1999-2000 by Randolph Chung <tausq@debian.org>\nCopyright (c) 1996-2008 Markus Franz Xaver Johannes Oberhumer\nCopyright (c) 2016-2018 Kaarle Ritvanen\nCopyright (c) 2000-2002 Matt Kraai <kraai@alumni.carnegiemellon.edu>\nCopyright (c) 2006-2007 Gabriel Somlo <somlo at cmu.edu>\nCopyright (c) 2003, 2005-2008, 2014 by Tito Ragusa <farmatito@tiscali.it>\nCopyright (c) 2005 by Tito Ragusa <tito-wolit@tiscali.it> \nCopyright (c) 2009 Stefan Seyfried <seife@sphairon.com>\nCopyright (c) 2000, Axis Communications AB\nCopyright (c) Eero Tamminen <oak at welho dot com>\nCopyright (c) Lauri Kasanen\nCopyright (c) 2001-2003, 2005 Manuel Novoa III (mjn3@codepoet.org)\nCopyright (c) 2002 by Kai Germaschewski <kai.germaschewski@gmx.de>\nCopyright (c) 1991-2, RSA Data Security, Inc.\nCopyright (c) 1992 A. V. Le Blanc (LeBlanc@mcc.ac.uk)\nCopyright (c) 1992, 1993, 1994, 1995 Remy Card (card@masi.ibp.fr)\nCopyright (c) 1992-1993 Jean-loup Gailly.\nCopyright (c) 1992-1998 Michael K. Johnson \nCopyright (c) 1993 Rick Sladkey <jrs@world.std.com> ",
      "licenses": [
        {
          "license": {
            "name": "GPL v2.0 only"
          }
        }
      ],
      "cpe": "cpe:2.3:a:busybox:busybox:1.37.0:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/busybox@1.37.0-5?epoch=1",
      "description": "BusyBox",
      "supplier": {
        "url": [
          "https://busybox.net/"
        ]
      },
      "pedigree": {
        "patches": [
          {
            "type": "cherry-pick",
            "resolves": [
              {
                "type": "security",
                "id": "CVE-2025-46394 ",
                "name": "CVE-2025-46394 ",
                "source": {
                  "name": "National Vulnerability Database",
                  "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46394"
                }
              }
            ]
          }
        ]
      }
    },
    {
      "name": "Git",
      "bom-ref": "Git",
      "type": "library",
      "version": "v2.34.1",
      "copyright": "Copyright (c) 2005 Nicolas Pitre <nico@fluxnic.net>\nCopyright (c) 2005-2006 Niall Douglas\nCopyright (c) 2009 Ilari Liusvaara <ilari.liusvaara@elisanet.fi>\nCopyright (c) 2012 Heiko Voigt <hvoigt@hvoigt.net>\nCopyright (c) 2006 Linus Torvalds * 2006 Junio Hamano\nCopyright (c) 2006 Theodore Y. Ts\nCopyright (c) 2007 Johannes Schindelin \nCopyright (c) 2007 Simon Hausmann <simon@lst.de>\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.,\nCopyright (c) 1989, 1998, 2005 Free Software Foundation, Inc.\nCopyright (c) 1991, 1999 Free Software Foundation, Inc.\nCopyright (c) 1996-2001 Internet Software Consortium.\nCopyright (c) 1996-2001 Internet Software Consortium.\nCopyright (c) 1998-2007 Free Software Foundation, Inc.\nCopyright (c) 2000-2002 Michael R. Elkins <me@mutt.org>\nCopyright (c) 2002 Free Software Foundation, Inc.\nCopyright (c) 2002, 2003, 2005 Free Software Foundation, Inc.\nCopyright (c) 2002-2004 Oswald Buddenhagen <ossi@users.sf.net>\nCopyright (c) 2002-2005, 2007, 2008, 2010 Free Software Foundation, Inc.\nCopyright (c) 2002-2005, 2007, 2009, 2010 Free Software Foundation, Inc.\nCopyright (c) 2002-2006, 2010 Free Software Foundation, Inc.\nCopyright (c) 2002-2007,2009,2010 Free Software Foundation, Inc.\nCopyright (c) 2003 Davide Libenzi\nCopyright (c) 2003-2006 Davide Libenzi, Johannes E. Schindelin\nCopyright (c) 2003-2007 Free Software Foundation, Inc.\nCopyright (c) 2003-2016 Davide Libenzi, Johannes E. Schindelin\nCopyright (c) 2004 Theodore Y. Ts\nCopyright (c) 2005 Junio C Hamano\nCopyright (c) 2005 Linus Torvalds\nCopyright (c) 2005 Paul Mackerras <paulus@samba.org>\nCopyright (c) 2005 Rene Scharfe\nCopyright (c) 2005, Junio C Hamano\nCopyright (c) 2006 Carl D. Worth <cworth@cworth.org>\nCopyright (c) 2006 Christian Couder\nCopyright (c) 2006 Johannes Schindelin\nCopyright (c) 2006 Linus Torvalds\nCopyright (c) 2006 Martin Waitz <tali@admingilde.org>\nCopyright (c) 2006 Mike McCormack",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "cpe": "cpe:2.3:a:git-scm:git:2.34.1:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/git@2.34.1-1?epoch=1",
      "supplier": {
        "url": [
          "https://git-scm.com/"
        ]
      }
    },
    {
      "name": "i2c-tools",
      "bom-ref": "i2c-tools",
      "type": "library",
      "version": "4.3",
      "copyright": "Copyright (c) 1989, 1991, 1999 Free Software Foundation, Inc.,\nCopyright (c) 1995-1997 Simon G. Vogl\nCopyright (c) 1998, 1999 Philip Edelbrock <phil@netroedge.com>\nCopyright (c) 1998-1999 Frodo Looijaard <frodol@dds.nl>\nCopyright (c) 1998-2004 Mark D. Studebaker <mdsxyz123@yahoo.com>\nCopyright (c) 1998-2004 Frodo Looijaard <frodol@dds.nl>\nCopyright (c) 2001-2003 Frodo Looijaard <frodol@dds.nl>, and Mark D. Studebaker <mdsxyz123@yahoo.com>\nCopyright (c) 2002 James Simmons <jsimmons@users.sf.net>\nCopyright (c) 2002-2003 Frodo Looijaard <frodol@dds.nl>, and Mark D. Studebaker <mdsxyz123@yahoo.com>\nCopyright (c) 2002-2021 Jean Delvare <jdelvare@suse.de>\nCopyright (c) 2005-2007 Mark M. Hoffman <mhoffman@lightlink.com>\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2012-2020 Jean Delvare <jdelvare@suse.de>\nCopyright (c) 2013 Jaromir Capik\nCopyright (c) 2015-17 Renesas Electronics Corporation\nCopyright (c) 2015-17 Wolfram Sang <wsa@sang-engineering.com>\nCopyright (c) 2015-17 Renesas Electronics Corporation Based on i2cget.c:\nCopyright (c) 2015-17 Wolfram Sang <wsa@sang-engineering.com>\nCopyright (c) 1999-2003 Frodo Looijaard <frodol@dds.nl> and Mark D. Studebaker <mdsxyz123@yahoo.com>\nCopyright (c) 2003 Stefano Barbato\nCopyright (c) 2003 by Stefano Barbato \nCopyright (c) 1995-1997 Simon G. Vogl\nCopyright (c) by 2002-2003 Stefano Barbato ",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/i2c-tools@4.3-1",
      "description": "heterogeneous set of I2C tools for Linux\r\nThis package contains a heterogeneous set of I2C tools for Linux: a bus\r\nprobing tool, a chip dumper, register-level access helpers, EEPROM\r\ndecoding scripts, and more.",
      "supplier": {
        "url": [
          "http://www.lm-sensors.org"
        ]
      }
    },
    {
      "name": "lsscsi",
      "bom-ref": "lsscsi",
      "type": "library",
      "version": "0.31",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1996-2017 Free Software Foundation, Inc. \nCopyright (c) 2003-2020 D. Gilbert\nCopyright (c) 2005-2009 United States Government as represented by # the U.S. Army Research Laboratory. \nCopyright (c) 2014-2018 Douglas Gilbert.\nCopyright (c) 2003-2005 Doug Gilbert <dgilbert@interlog.com>\nCopyright (c) 2003-2008 D. Gilbert Upstream Author: Doug Gilbert <dgilbert@interlog.com>\nCopyright (c) 2005 Matt Taggart <taggart@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/lsscsi@0.31-1",
      "description": "The lsscsi command lists information about SCSI devices in Linux. Using SCSI terminology, lsscsi lists SCSI logical units (or SCSI targets when the '--transport' option is given). The default action is to produce one line of output for each SCSI device currently attached to the system.",
      "supplier": {
        "url": [
          "http://sg.danny.cz/scsi/lsscsi.html"
        ]
      }
    },
    {
      "name": "memtester",
      "bom-ref": "memtester",
      "type": "library",
      "version": "4.7.1",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1999, 2001-2024 Charles Cazabon <charlesc-memtester@pyropus.ca>\nCopyright (c) 1999 Simon Kirby.\nCopyright (c) 2013- Laszlo Boszormenyi (GCS) <gcs@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/memtester@4.7.1-1",
      "description": "Utility for testing the memory subsystem\r\nThis is a userspace utility for testing the memory subsystem for faults.\r\nIn comparison to memtest86 you do not need to reboot the computer to test\r\nfor memory faults.\r\n\r\nMemtester can also be told to test memory starting at a particular\r\nphysical address.",
      "supplier": {
        "url": [
          "http://pyropus.ca/software/memtester/"
        ]
      }
    },
    {
      "name": "minicom",
      "bom-ref": "minicom",
      "type": "library",
      "version": "2.8",
      "copyright": "Copyright (c) 1992, 1993 by Panagiotis Tsirigotis \nCopyright (c) 1995 by Charles Murcko \nCopyright (c) 1987, 88, 89, 90, 91, 92, 93, 94, 95, 96, 97 Free Software Foundation, Inc. \nCopyright (c) 1987,88,89,90,91,92,93,94,96,97, 98 Free Software Foundation, Inc. \nCopyright (c) 1989, 1991 Free Software Foundation, Inc.,\nCopyright (c) 1989,90,91,92,93,94,96,97, 98 Free Software Foundation, Inc. \nCopyright (c) 1990,91,92,93,94,95,96,97,98 Free Software Foundation, Inc. \nCopyright (c) 1991,1992,1993,1994,1995,1996\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2016 Free Software Foundation, Inc. \nCopyright (c) 1995, 1996, 1997 Free Software Foundation, Inc. \nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1995-2014, 2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2005, 2008-2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2009-2016 Free Software Foundation, Inc. \nCopyright (c) 1996-2020 Free Software Foundation, Inc. \nCopyright (c) 2000-2002, 2007-2014, 2016 Free Software Foundation, Inc. \nCopyright (c) 2001-2005, 2008-2016 Free Software Foundation, Inc.\nCopyright (c) 2001-2016 Free Software Foundation, Inc. dnl \nCopyright (c) 2001-2020 Free Software Foundation, Inc. \nCopyright (c) 2004-2014, 2016 Free Software Foundation, Inc.\nCopyright (c) 2004-2020 Free Software Foundation, Inc. \nCopyright (c) 2009-2020 Free Software Foundation, Inc. \nCopyright (c) 2011-2020 Free Software Foundation, Inc. \nCopyright (c) 1991-1996 Miquel van Smoorenburg <miquels@cistron.nl>.\nCopyright (c) 1998 by Arnaldo Carvalho de Melo <acme@conectiva.com.br>\nCopyright (c) 1998 by James S. Seymour (jseymour@jimsun.LinxNet.com)\nCopyright (c) 1999 by The XFree86 Project, Inc. \nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/minicom@2.8-2",
      "description": "friendly menu driven serial communication program\r\nMinicom is a clone of the MS-DOS \"Telix\" communication program. It emulates\r\nANSI and VT102 terminals, has a dialing directory and auto zmodem download.",
      "supplier": {
        "url": [
          "https://alioth.debian.org/projects/minicom/"
        ]
      }
    },
    {
      "name": "net-tools",
      "bom-ref": "net-tools",
      "type": "library",
      "version": "1.60+git20181103.0eebece",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.,\nCopyright (c) 2000 David A. Hinds -- dhinds@pcmcia.sourceforge.org\nCopyright (c) 1993 Fred Baumgarten\nCopyright (c) 1994 John Paul Morrison (VE7JPM).\nCopyright (c) 1988-1993 MicroWalt Corporation\nCopyright (c) 1993 MicroWalt Corporation\nCopyright (c) 1993,1994 MicroWalt Corporation\nCopyright (c) 1996 Bernd Eckenfels, Germany\nCopyright (c) 1997,1999,2000 Andi Kleen. Subject to the GPL.\nCopyright (c) 1998 Andi Kleen\nCopyright (c) 1998 by Andi Kleen.\nCopyright (c) 1999 Bernd Eckenfels, Germany\nCopyright (c) 2001 Daniel Stodden\nCopyright (c) 1997-2000 by Donald Becker\nCopyright (c) 1988-1994 MicroWalt Corporation\nCopyright (c) 1995-1996 Bernd Eckenfels\nCopyright (c) 1997-2000 Andi Kleen\nCopyright (c) 1997-2000 Donald Becker\nCopyright (c) 2000 Anthony Towns\nCopyright (c) 2000-2007 Bernd Eckenfels\nCopyright (c) 2008-2009 Luk Claes, Mart\nCopyright (c) 2018 Sergio Durigan Junior",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/net-tools@1.60%2Bgit20181103.0eebece-1%2Bdeb11u2",
      "description": "A collection of programs that form the base set of the NET-3 networking distribution for the Linux operating system. Includes: arp, hostname, ifconfig, netstat, rarp, route, plipconfig, slattach, mii-tool, iptunn\r\r\n\r\r\nPlease keep in mind that most net-tools programs are obsolete now. See ethtool and iproute2 instead.",
      "supplier": {
        "url": [
          "https://sourceforge.net/projects/net-tools/"
        ]
      }
    },
    {
      "name": "NFS",
      "bom-ref": "NFS",
      "type": "library",
      "version": "2.6.1",
      "copyright": "Copyright (c) 2004 <frederic.jolly@bull.ext.net> \nCopyright (c) 2006,2011 The Regents of the University of Michigan\nCopyright (c) 1984 Sun Microsystems, Inc.\nCopyright (c) 1984,1987 Sun Microsystems, Inc. * Modified by Jeffrey A. Uphoff, 1995, 1997-1999. * Modified by Olaf Kirch, 1996. * * NSM for Linux.\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1993 Rick Sladkey <jrs@world.std.com>\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995, 1996, 1997 Olaf Kirch <okir@monad.swb.de> * * Extensive changes, 1999, Neil Brown <neilb@cse.unsw.edu.au>\nCopyright (c) 1995, 1997, 1999 Jeffrey A. Uphoff * Modified by Olaf Kirch, 1996. * * NSM for Linux.\nCopyright (c) 1995-2005 Olaf Kirch <okir@suse.de> \nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc. \nCopyright (c) 1996-2020 Free Software Foundation, Inc.\nCopyright (c) 2001-2020 Free Software Foundation, Inc. \nCopyright (c) 2002 Trond Myklebust \nCopyright (c) 2002 Free Software Foundation, Inc.\nCopyright (c) 2004-2006 Olaf Kirch <okir@suse.de> \nCopyright (c) 2004-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2020 Free Software Foundation, Inc. \nCopyright (c) 2005, Chuck Lever <cel@netapp.com>\nCopyright (c) 2006 Amit Gud <agud@redhat.com>\nCopyright (c) 2006-2020 Free Software Foundation, Inc. \nCopyright (c) 2007 Chuck Lever <chuck.lever@oracle.com>\nCopyright (c) 2007,2008 Oracle. \nCopyright (c) 2008 Red Hat, Inc <nfs@redhat.com>\nCopyright (c) 2009 Jeff Layton <jlayton@redhat.com>\nCopyright (c) 2009 Red Hat <nfs@redhat.com>\nCopyright (c) 2009-2020 Free Software Foundation, Inc. \nCopyright (c) 2010 Red Hat, Jeff Layton <jlayton@redhat.com>\nCopyright (c) 2010 Karel Zak <kzak@redhat.com>\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2011 Red Hat, Jeff Layton <jlayton@redhat.com>\nCopyright (c) 2011 Free Software Foundation, Inc. \nCopyright (c) 2011 Karel Zak <kzak@redhat.com>\nCopyright (c) 2012 Jeff Layton <jlayton@redhat.com>\nCopyright (c) 2014 Free Software Foundation, Inc.\nCopyright (c) 2019 Scott Mayhew <smayhew@redhat.com>\nCopyright (c) 2019 Trond Myklebust <trond.myklebust@hammerspace.com>\nCopyright (c) 2021 Red Hat <nfs@redhat.com> \nCopyright (c) 1991, 1993 * The Regents of the University of California. \nCopyright (c) 1995,1999 Theo de Raadt. \nCopyright (c) 1998 Todd C. Miller <Todd.Miller@courtesan.com> \nCopyright (c) 1998, 1999, 2000, 2001 Niklas Hallqvist. \nCopyright (c) 1998, 1999, 2001 Niklas Hallqvist. \nCopyright (c) 2000 Dug Song <dugsong@UMICH.EDU>.\nCopyright (c) 2000 The Regents of the University of Michigan. \nCopyright (c) 2000, 2004 The Regents of the University of Michigan. ",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/nfs-utils@2.6.1-0.rc3.fc36?arch=armv7hl&epoch=1",
      "description": "Linux NFS development web site.",
      "supplier": {
        "url": [
          "http://linux-nfs.org/"
        ]
      }
    },
    {
      "name": "Openbox",
      "bom-ref": "Openbox",
      "type": "library",
      "version": "3.6.1",
      "copyright": "Copyright (c) 2002 Kyle McMartin <kyle@debian.org>\nCopyright (c) 2003, Ben Jansens\nCopyright (c) 2014, maxim2\nCopyright (c) 2015, jcsl\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1995-1998, 2000-2002 Free Software Foundation, Inc.\nCopyright (c) 1995-2002, 2004-2005 Free Software Foundation, Inc.\nCopyright (c) 1995-2003, 2005-2006 Free Software Foundation, Inc.\nCopyright (c) 1995-2006 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, # 2005, 2006, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 2000, 2001, 2003, 2005, 2008\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2003 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2005 Free Software Foundation, Inc.\nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 1997-2002, 2006 Free Software Foundation, Inc.\nCopyright (c) 1997-2004 Free Software Foundation, Inc.\nCopyright (c) 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2009, # 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2008\nCopyright (c) 1999, 2000, 2001, 2003, 2004, 2005, 2008\nCopyright (c) 1999-2004 Free Software Foundation, Inc.\nCopyright (c) 2000-2002 Free Software Foundation, Inc.\nCopyright (c) 2000-2002, 2004 Free Software Foundation, Inc.\nCopyright (c) 2001, 2002, 2003, 2005, 2008, 2010 Free Software Foundation, Inc.\nCopyright (c) 2001, 2002, 2003, 2005, 2008, 2010 Free Software Foundation, Inc.\nCopyright (c) 2001, 2002, 2003, 2005, 2009 Free Software Foundation, Inc.\nCopyright (c) 2001, 2003, 2005, 2008, 2011 Free Software Foundation, Inc.\nCopyright (c) 2001, 2003, 2005, 2011 Free Software Foundation, Inc.\nCopyright (c) 2001-2002 Free Software Foundation, Inc.\nCopyright (c) 2001-2005 Free Software Foundation, Inc.\nCopyright (c) 2001-2006 Free Software Foundation, Inc.\nCopyright (c) 2002 Dana Jansens\nCopyright (c) 2002 Free Software Foundation, Inc.\nCopyright (c) 2002, 2003, 2005, 2006, 2007, 2008, 2011 Free Software Foundation, Inc.\nCopyright (c) 2002, 2003, 2005, 2006, 2007, 2008, 2011 Free Software Foundation, Inc.\nCopyright (c) 2002-2003 Free Software Foundation, Inc.\nCopyright (c) 2002-2003, 2006 Free Software Foundation, Inc.\nCopyright (c) 2002-2005 Free Software Foundation, Inc.\nCopyright (c) 2003 Free Software Foundation, Inc.\nCopyright (c) 2003, 2004, 2005, 2006, 2011 Free Software Foundation, Inc.\nCopyright (c) 2003, 2005 Free Software Foundation, Inc.\nCopyright (c) 2003, 2005-2006 Free Software Foundation, Inc.\nCopyright (c) 2003-2004 Free Software Foundation, Inc.\nCopyright (c) 2004 Mikael Magnusson\nCopyright (c) 2004-2005, 2007-2009, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2015 Free Software Foundation, Inc.\nCopyright (c) 2005 Free Software Foundation, Inc.\nCopyright (c) 2006, 2008, 2010 Free Software Foundation, Inc.\nCopyright (c) 2009, 2011 Free Software Foundation, Inc.\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2002 Dana Jansens\nCopyright (c) 2003 Derek Foreman\nCopyright (c) 2003-2010 Dana Jansens\nCopyright (c) 2004,2006 Mikael Magnusson\nCopyright (c) 2007 Mikael Magnusson\nCopyright (c) 2011, 2013 Ian Zimmerman\nCopyright (c) 2012 Dana Jansens\nCopyright (c) 2012 Mikael Magnusson\nCopyright (c) The Regents of the University of California. \nCopyright (c) 1991 by the Massachusetts Institute of Technology\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/openbox@3.6.1-10",
      "description": "Openbox is a standards compliant, fast, light-weight, extensible window manager.\r\r\n\r\r\nOpenbox works with your applications, and makes your desktop easier to manage. This is because the approach to its development was the opposite of what seems to be the general case for window managers. Openbox was written first to comply with standards and to work properly. Only when that was in place did the team turn to the visual interface.\r\r\n\r\r\nOpenbox is fully functional as a stand-alone working environment, or can be used as a drop-in replacement for the default window manager in the GNOME or KDE desktop environments.",
      "supplier": {
        "url": [
          "http://openbox.org"
        ]
      }
    },
    {
      "name": "pavucontrol",
      "bom-ref": "pavucontrol",
      "type": "library",
      "version": "5",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.,\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-2002 Free Software Foundation, Inc.\nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1996-2018 Free Software Foundation, Inc. \nCopyright (c) 2001 Eazel, Inc.\nCopyright (c) 2001-2003,2004 Red Hat, Inc.\nCopyright (c) 2001-2018 Free Software Foundation, Inc. \nCopyright (c) 2004-2013 Free Software Foundation, Inc. \nCopyright (c) 2004-2018 Free Software Foundation, Inc. \nCopyright (c) 2006-2018 Free Software Foundation, Inc. \nCopyright (c) 2009-2018 Free Software Foundation, Inc. \nCopyright (c) 2008 Benjamin Kosnik <bkoz@redhat.com>\nCopyright (c) 2012 Zack Weinberg <zackw@panix.com>\nCopyright (c) 2013 Roy Stogner <roystgnr@ices.utexas.edu>\nCopyright (c) 2014, 2015 Google Inc.; contributed by Alexey Sokolov <sokolov@google.com>\nCopyright (c) 2015 Moritz Klammler <moritz@klammler.eu> \nCopyright (c) 2015 Paul Norman <penorman@mac.com>\nCopyright (c) 2006-2008 Lennart Poettering\nCopyright (c) 2008 Sjoerd Simons <sjoerd@luon.net>\nCopyright (c) 2009 Colin Guthrie\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright \u00A9(c)2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ]
    },
    {
      "name": "relan/exfat",
      "bom-ref": "relan/exfat",
      "type": "library",
      "version": "1.3.0+git20220115",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "description": "Free exFAT file system implementation",
      "supplier": {
        "url": [
          "https://github.com/relan/exfat"
        ]
      }
    },
    {
      "name": "Smartmontools - S.M.A.R.T. Disk Monitoring Tools",
      "bom-ref": "Smartmontools - S.M.A.R.T. Disk Monitoring Tools",
      "type": "library",
      "version": "7.5",
      "copyright": "Copyright (c) 1985, 1987-2021 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1999-2000 Michael Cornwell <cornwell@acm.org>\nCopyright (c) 1999-2003 3ware Inc. \nCopyright (c) 2000 Andre Hedrick <andre@suse.com>\nCopyright (c) 2002 Bruce Allen\nCopyright (c) 2003 Philip Williams\nCopyright (c) 2003 SAWADA Keiji\nCopyright (c) 2003 Eduard Martinescu\nCopyright (c) 2003, 2006 Doug Gilbert <dgilbert@interlog.com>\nCopyright (c) 2003 Casper Dik\nCopyright (c) 2003, 2007 Sergey Svishchev\nCopyright (c) 2004 David Snyder\nCopyright (c) 2004, 2006, 2008, 2009, 2011, 2012, 2016, 2021, 2023, 2024 Christian Franke\n",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ]
    },
    {
      "name": "sysstat",
      "bom-ref": "sysstat",
      "type": "library",
      "version": "12.5.2",
      "copyright": "Copyright (c) 1998-2020 by Sebastien GODARD \nCopyright (c) 2000,2001 by David Doubrava <linux_monitor@volny.cz>\nCopyright (c) 2004 by Red Hat (Charlie Bennett <ccb@redhat.com>) \nCopyright (c) 2015 Hewlett-Packard Development Company, L.P. \nCopyright (c) 1989, 1991 Free Software Foundation, Inc., <http://fsf.org/>\nCopyright (c) 1994, 1995, 1996, 1999, 2000, 2001, 2002 Free Software Foundation, Inc. \nCopyright (c) 2010 Red Hat, Inc. All Rights Reserved \nCopyright (c)  2000-2016 Robert Luberda <robert@debian.org>\nCopyright (c) 2004, 2010, Red Hat, Inc.",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "cpe": "cpe:2.3:a:sysstat_project:sysstat:12.5.2:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/sysstat@12.5.2-2",
      "description": "The sysstat package contains utilities to monitor system performance and usage activity. Sysstat contains various utilities, common to many commercial Unixes, and tools you can schedule via cron to collect and historize performance and activity data.\r\r\n\r\r\n* iostat(1) reports CPU statistics and input/output statistics for devices, partitions and network filesystems.\r\r\n* mpstat(1) reports individual or combined processor related statistics.\r\r\n* pidstat(1) reports statistics for Linux tasks (processes) : I/O, CPU, memory, etc.\r\r\n* sar(1) collects, reports and saves system activity information (CPU, memory, disks, interrupts, network interfaces, TTY, kernel tables,etc.)\r\r\n* sadc(8) is the system activity data collector, used as a backend for sar.\r\r\n* sa1(8) collects and stores binary",
      "supplier": {
        "url": [
          "http://pagesperso-orange.fr/sebastien.godard/"
        ]
      }
    },
    {
      "name": "tree",
      "bom-ref": "tree",
      "type": "library",
      "version": "2.0.2",
      "copyright": "Copyright (c) 1996 - 2022 by Steve Baker, Thomas Moore, Francesc Rocher, Florian Sesser, Kyosuke Tokoro\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1997, 2002, 2005 Free Software Foundation, Inc.\nCopyright (c) 1996 - 2022 by Steve Baker (ice@mama.indstate.edu)",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/tree@2.0.2-1",
      "description": "Tree generator from an array/object with parent id",
      "supplier": {
        "url": [
          "http://mama.indstate.edu/users/ice/tree/"
        ]
      }
    },
    {
      "name": "udisks",
      "bom-ref": "udisks",
      "type": "library",
      "version": "2.9.4",
      "copyright": "Copyright (c) 2003, 2004, 2005 Thomas Vander Stichele \nCopyright (c) 2011 Sebastian Heinlein\nCopyright (c) 2012 Canonical Ltd. # Authors:\nCopyright (c) 2016 Peter Hatina <phatina@redhat.com>\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1991 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1995-2014, 2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc. \nCopyright (c) 1996-2003, 2005, 2008-2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2009-2016 Free Software Foundation, Inc. \nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2020 Free Software Foundation, Inc. \nCopyright (c) 2003 James Henstridge\nCopyright (c) 2003-2020 Free Software Foundation, Inc. \nCopyright (c) 2007-2011 David Zeuthen <zeuthen@gmail.com>\nCopyright (c) 2007-2011 Red Hat, Inc.\nCopyright (c) 2008-2011 David Zeuthen <zeuthen@gmail.com>\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2011 Free Software Foundation, Inc. \nCopyright (c) 2011 Martin Pitt <martin.pitt@ubuntu.com>\nCopyright (c) 2012 David Zeuthen <zeuthen@gmail.com>\nCopyright (c) 2013 Marius Vollmer <marius.vollmer@gmail.com>\nCopyright (c) 2013-2015 Red Hat, Inc.\nCopyright (c) 2014 Free Software Foundation, Inc.\nCopyright (c) 2014 Tomas Bzatek <tbzatek@redhat.com>\nCopyright (c) 2015 Dominika Hodovska <dhodovsk@redhat.com>\nCopyright (c) 2015 Gris Ge <fge@redhat.com>\nCopyright (c) 2015 Peter Hatina <phatina@redhat.com>\nCopyright (c) 2015 Red Hat, Inc.\nCopyright (c) 2016 Gris Ge <fge@redhat.com>\nCopyright (c) 2016 Peter Hatina <phatina@redhat.com>\nCopyright (c) 2017 Andrea Azzarone <andrea.azzarone@canonical.com>\nCopyright (c) 2017 Red Hat, Inc.\nCopyright (c) 2018 Tomas Bzatek <tbzatek@redhat.com>\nCopyright (c) 2019 Vojtech Trefny <vtrefny@redhat.com>\nCopyright (c) 2020 Tomas Bzatek <tbzatek@redhat.com>\nCopyright (c) 2006-2008 Diego Petten\nCopyright (c) 2006-2008 xine project\nCopyright (c) 2011 Rhys Ulerich <rhys.ulerich@gmail.com>\nCopyright (c) 2014, 2015 Philip Withnall <philip@tecnocode.co.uk>\nCopyright (c) 2009 Johan Dahlin dnl \nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/udisks2@2.9.4-2",
      "description": "Storage management",
      "supplier": {
        "url": [
          "http://www.freedesktop.org/wiki/Software/udisks"
        ]
      }
    },
    {
      "name": "wmctrl",
      "bom-ref": "wmctrl",
      "type": "library",
      "version": "1.07",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994, 1995, 1996, 1999, 2000, 2001, 2002, 2003 Free Software Foundation, Inc. \nCopyright (c) 2003, Tomas Styblo <tripie@cpan.org>\nCopyright (c) 1996, 1997, 1999, 2000, 2001, 2002 Free Software Foundation, Inc.",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/wmctrl@1.07-6",
      "description": "control an EWMH/NetWM compatible X Window Manager\r\nWmctrl is a command line tool to interact with an\r\nEWMH/NetWM compatible X Window Manager (examples include\r\nEnlightenment, icewm, kwin, metacity, and sawfish).\r\n\r\nWmctrl provides command line access to almost all the features\r\ndefined in the EWMH specification. For example it can maximize\r\nwindows, make them sticky, set them to be always on top. It can\r\nswitch and resize desktops and perform many other useful\r\noperations.",
      "supplier": {
        "url": [
          "http://tomas.styblo.name/wmctrl/"
        ]
      }
    },
    {
      "name": "xfce4-pulseaudio-plugin",
      "bom-ref": "xfce4-pulseaudio-plugin",
      "type": "library",
      "version": "0.4.3",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.,\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2016 Free Software Foundation, Inc. \nCopyright (c) 1995-2002 Free Software Foundation, Inc.\nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc. \nCopyright (c) 2001-2003,2004 Red Hat, Inc.\nCopyright (c) 2014 Eric Koegel <eric@xfce.org>\nCopyright (c) 2014-2017 Andrzej <andrzejr@xfce.org>\nCopyright (c) 2017-2020 Sean Davis <bluesabre@xfce.org>\nCopyright (c) 2009-2015 Steve Dodier-Lazaro <sidi@xfce.org>\nCopyright (c) 2014-2020 The Xfce development team. \nCopyright (c) 2015 Guido Berhoerster \nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>\nCopyright (c) 2009-2015, Steve Dodier-Lazaro <sidi@xfce.org>\nCopyright (c) 2015-2019, Unit 193 <unit193@ubuntu.com>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/xfce4-pulseaudio-plugin@0.4.3-1",
      "description": "Xfce4 panel plugin to control pulseaudio\r\nXfce4 panel plugin icon to control Pulseaudio. You can use this applet to\r\ncontrol your Pulseaudio volume levels with the media keys or using the\r\nscrollwheel. You can also open a Pulseaudio mixer via the plugin.",
      "supplier": {
        "url": [
          "http://goodies.xfce.org/projects/panel-plugins/xfce4-pulseaudio-plugin"
        ]
      }
    },
    {
      "name": "Xfwm4",
      "bom-ref": "Xfwm4",
      "type": "library",
      "version": "4.16.1",
      "copyright": "Copyright (c) 1998 mozilla.org\nCopyright (c) 2001 Anders Carlsson, Havoc Pennington\nCopyright (c) 2001 Havoc Pennington\nCopyright (c) 2001 Ken Lynch\nCopyright (c) 2001, 2002 Havoc Pennington\nCopyright (c) 2002-2008 Olivier Fourdan\nCopyright (c) 2002-2011 Olivier Fourdan\nCopyright (c) 2003 Havoc Pennington\nCopyright (c) 2003 Keith Packard\nCopyright (c) 2003, 2004 Red Hat, Inc.\nCopyright (c) 2017 Viktor Odintsev\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2016 Free Software Foundation, Inc. \nCopyright (c) 1995-2002 Free Software Foundation, Inc.\nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc. \nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2018 Free Software Foundation, Inc. \nCopyright (c) 1999 Mark Crichton\nCopyright (c) 2001-2003,2004 Red Hat, Inc.\nCopyright (c) 2002-2020 The Xfce development team. \nCopyright (c) 2008 Brian Tarricone <bjt23@cornell.edu>\nCopyright (c) 2008 Jannis Pohlmann <jannis@xfce.org>\nCopyright (c) 2008 Jannis Pohlmann <jannis@xfce.org>.\nCopyright (c) 2008 Mike Massonnet <mmassonnet@xfce.org>\nCopyright (c) 2008 Olivier Fourdan <olivier@xfce.org>\nCopyright (c) 2008 Stephan Arts <stephan@xfce.org>\nCopyright (c) 2017 Viktor Odintsev <zakhams@gmail.com>\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>\nCopyright (c) 1999, Mark Crichton\nCopyright (c) 2001, Anders Carlsson, Havoc Pennington\nCopyright (c) 2001, Havoc Pennington\nCopyright (c) 2001, Ken Lynch\nCopyright (c) 2002, Havoc Pennington\nCopyright (c) 2002-2008, Olivier Fourdan\nCopyright (c) 2003, Keith Packard\nCopyright (c) 2003-2008 Olivier Fourdan <fourdan@xfce.org>\nCopyright (c) 2005 Owen Taylor <otaylor@redhat.com>\nCopyright (c) 2008, Brian Tarricone <bjt23@cornell.edu>\nCopyright (c) 2008, Jannis Pohlmann <jannis@xfce.org>\nCopyright (c) 2003 Olivier Fourdan <fourdan.olivier@wanadoo.fr>\nCopyright (c) 2004-2006 Olivier Fourdan <fourdan@xfce.org>\nCopyright (c) 2006 Mike Massonnet <mmassonnet@gmail.com>\nCopyright (c) 2006-2008 Olivier Fourdan <fourdan@xfce.org>",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/xfwm4@4.16.1-1",
      "description": "Xfce's window manager",
      "supplier": {
        "url": [
          "http://www.xfce.org"
        ]
      }
    },
    {
      "name": "GDB",
      "bom-ref": "GDB",
      "type": "library",
      "version": "12.1",
      "copyright": "Copyright (c) 1995-2017 Jean-loup Gailly and Mark Adler\nCopyright (c) 1984 by Third Eye Software, Inc.\nCopyright (c) 2001 by Dimitris Vyzovitis\nCopyright (c) 2004 by Henrik Ravn\nCopyright (c) 1983, 1990, Regents of the University of California\nCopyright (c) 1984-2014, Free Software Foundation, Inc\nCopyright (c) 1985-2013, Free Software Foundation, Inc\nCopyright (c) 1987, 1993-2002 Oliver Laumann\nCopyright (c) 1989-2011 Free Software Foundation, Inc\nCopyright (c) 1990, The Regents of the University of California\nCopyright (c) 1994, 2000 Advanced RISC Machines Ltd\nCopyright (c) 1995, Jiri Gaisler\nCopyright (c) 1997-2011 Free Software Foundation, Inc\nCopyright (c) 1999-2014, Free Software Foundation, Inc\nCopyright (c) 2001, Dimitris Vyzovitis\nCopyright (c) 2004, 1999 Per Bothner\nCopyright (c) 2005 - Adaptation to Microsoft C Compiler for AMD64 by Gilles Vollant\nCopyright (c) 1994 Advanced RISC Machines Ltd.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994,1995,1996, Andrew Cagney <cagney@highland.com.au>\nCopyright (c) 1995-1996 Jean-loup Gailly, Brian Raiter and Gilles Vollant.\nCopyright (c) 1996, Cygnus Software Technologies Ltd.\nCopyright (c) 1998 - 2010 Gilles Vollant, Even Rouault, Mathias Svensson\nCopyright (c) 1998 Brian Raiter <breadbox@muppetlabs.com>\nCopyright (c) 1998 by Bob Dellaca.\nCopyright (c) 1998 by Jacques Nomssi Nzali.\nCopyright (c) 1998, Cygnus Solutions\nCopyright (c) 1998,1999,2000 by Jacques Nomssi Nzali.\nCopyright (c) 1998-2005 Gilles Vollant",
      "licenses": [
        {
          "license": {
            "name": "GPL 3.0+"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/gdb@12.1-3ubuntu2",
      "description": "GDB, the GNU Project debugger, allows you to see what is going on `inside' another program while it executes -- or what another program was doing at the moment it crashed.\r\r\n\r\r\nGDB can do four main kinds of things (plus other things in support of these) to help you catch bugs in the act:\r\r\n\r\r\n * Start your program, specifying anything that might affect its behavior.\r\r\n * Make your program stop on specified conditions.\r\r\n * Examine what has happened, when your program has stopped.\r\r\n * Change things in your program, so you can experiment with correcting the effects of one bug and go on to learn about another.\r\r\n\r\r\nThe program being debugged can be written in Ada, C, C++, Objective-C, Pascal (and many other languages).",
      "supplier": {
        "url": [
          "http://www.gnu.org/software/gdb/"
        ]
      }
    },
    {
      "name": "lbzip2",
      "bom-ref": "lbzip2",
      "type": "library",
      "version": "2.5",
      "copyright": "Copyright (c) 1996, 1997 Julian Seward <jseward@acm.org>\nCopyright (c) 2008, 2009, 2010 Laszlo Ersek <lacos@caesar.elte.hu>\nCopyright (c) 2011, 2012, 2013, 2014 Mikolaj Izdebski <zurgunt@gmail.com>\nCopyright (c) 2012 Mikolaj Izdebski <zurgunt@gmail.com>\nCopyright (c) 1990-2000, 2002-2006, 2008-2014 Free Software Foundation, Inc.\nCopyright (c) 1991, 1993, 1996-1997, 1999-2000, 2003-2004, 2006, 2008-2014 Free Software Foundation, Inc.\nCopyright (c) 1992, 1999, 2001, 2003, 2005, 2009-2014 Free Software\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2013 Free Software Foundation, Inc.\nCopyright (c) 1995, 1999, 2001-2004, 2006-2014 Free Software Foundation,\nCopyright (c) 1995, 2001-2004, 2006-2014 Free Software Foundation, Inc.\nCopyright (c) 1995-1996, 2001-2014 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997 by Julian Seward.\nCopyright (c) 1996-2013 Free Software Foundation, Inc.\nCopyright (c) 1997-1998, 2006-2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2001, 2003-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2002, 2006, 2008-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2004, 2006, 2008-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2004, 2006-2007, 2009-2014 Free Software Foundation,\nCopyright (c) 1997-2004, 2006-2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2006, 2008-2014 Free Software Foundation, Inc.\nCopyright (c) 1997-2013 Free Software Foundation, Inc.\nCopyright (c) 1998-1999, 2001, 2003, 2005-2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1998-2001, 2003-2004, 2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1999, 2002, 2006, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1999, 2002-2003, 2005, 2007, 2010-2014 Free Software\nCopyright (c) 1999, 2002-2003, 2005-2007, 2009-2014 Free Software\nCopyright (c) 1999, 2002-2003, 2006-2007, 2011-2014 Free Software\nCopyright (c) 1999, 2002-2014 Free Software Foundation, Inc.\nCopyright (c) 1999-2000, 2002-2003, 2006-2014 Free Software Foundation, Inc.\nCopyright (c) 1999-2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 1999-2013 Free Software Foundation, Inc.\nCopyright (c) 2000, 2002, 2004-2005, 2007, 2009-2014 Free Software\nCopyright (c) 2000-2001, 2003-2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 2000-2001, 2004-2006, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 2001-2002, 2004-2014 Free Software Foundation, Inc.\nCopyright (c) 2001-2003, 2005, 2007, 2009-2014 Free Software Foundation, Inc.\nCopyright (c) 2001-2003, 2005-2007, 2009-2014 Free Software Foundation, Inc.",
      "licenses": [
        {
          "license": {
            "name": "GPL 3.0+"
          }
        }
      ],
      "purl": "pkg:deb/debian/lbzip2@2.5-5",
      "description": "Parallel bzip2 utility",
      "supplier": {
        "url": [
          "https://github.com/kjn/lbzip2"
        ]
      }
    },
    {
      "name": "libasan6",
      "bom-ref": "libasan6",
      "type": "library",
      "version": "11.4.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "GPL-3.0-with-GCC-exception"
          }
        }
      ],
      "description": "AddressSanitizer -- a fast memory error detector\r\nAddressSanitizer (ASan) is a fast memory error detector.  It finds\r\nuse-after-free and {heap,stack,global}-buffer overflow bugs in C/C++ programs.",
      "supplier": {
        "url": [
          "http://gcc.gnu.org/"
        ]
      }
    },
    {
      "name": "libatomic1",
      "bom-ref": "libatomic1",
      "type": "library",
      "version": "12.2.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "GPL-3.0-with-GCC-exception"
          }
        }
      ],
      "description": "support library providing __atomic built-in functions\r\nlibrary providing __atomic built-in functions. When an atomic call cannot\r\nbe turned into lock-free instructions, GCC will make calls into this library.",
      "supplier": {
        "url": [
          "http://gcc.gnu.org/"
        ]
      }
    },
    {
      "name": "Advanced Linux Sound Architecture (ALSA)",
      "bom-ref": "Advanced Linux Sound Architecture (ALSA)",
      "type": "library",
      "version": "1.2.6.1",
      "copyright": "Copyright (c) 1998-1999 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2003 - Rear Left, Rear Right\nCopyright (c) 1998-1999 Wichert Akkerman\nCopyright (c) 1998-2022 Jarsolav Kysela <perex@suse.cz> and others\nCopyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1991, 1999 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-1999, 2000 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2020 Free Software Foundation, Inc.\nCopyright (c) 1998,99,2000 Takashi Iwai <tiwai@suse.de>, * Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1999-2020 Free Software Foundation, Inc.\nCopyright (c) 2000-2002 Richard W.E. Furse, Paul Barton-Davis,\nCopyright (c) 2001-2020 Free Software Foundation, Inc.\nCopyright (c) 2003 Thomas Charbonnel (thomas@undata.org)\nCopyright (c) 2003 Winfried Ritsch (IEM)\nCopyright (c) 2003-2020 Free Software Foundation, Inc.\nCopyright (c) 2004, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2005, 2007-2009, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2020 Free Software Foundation, Inc.\nCopyright (c) 2008-2010 SlimLogic Ltd\nCopyright (c) 2010 Red Hat Inc.\nCopyright (c) 2010 Texas Instruments Inc.\nCopyright (c) 2010 Wolfson Microelectronics PLC\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2012 Texas Instruments Inc.\nCopyright (c) 2015 Intel Corporation\nCopyright (c) 2019-2020 Red Hat Inc.\nCopyright (c) 2021 Jaroslav Kysela\nCopyright (c) 2021 Red Hat Inc.\nCopyright (c) 1994-2003 by Jaroslav Kysela <perex@perex.cz>, Abramo Bagnara <abramo@alsa-project.org>\nCopyright (c) 1994-98 by Jaroslav Kysela <perex@perex.cz>, * 4Front Technologies\nCopyright (c) 1998 by Frank van de Pol <F.K.W.van.de.Pol@inter.nl.net>\nCopyright (c) 1998 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1998,1999,2000 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1998-1999 by Frank van de Pol <fvdpol@coil.demon.nl>\nCopyright (c) 1998-2001 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1998/1999/2000 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1999 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 1999 by Uros Bizjak <uros@kss-loka.si> * Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1999 by Uros Bizjak <uros@kss-loka.si> * Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2000 by Abramo Bagnara <abramo@alsa-project.org>\nCopyright (c) 2000,2004 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2001 by Abramo Bagnara <abramo@alsa-project.org>\nCopyright (c) 2001 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2001-2006 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2002 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2003 by Abramo Bagnara <abramo@alsa-project.org>\nCopyright (c) 2003 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2004 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2004 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2005 Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2005 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2005 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2006 Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2006 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2006-2008 Diego Petten\nCopyright (c) 2006-2008 xine project\nCopyright (c) 2007 Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2007 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2007 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2010 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2015 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2015-2016 Takashi Sakamoto\nCopyright (c) 2016 by Thomas Klausner <wiz@NetBSD.org>\nCopyright (c) 2019 Red Hat Inc.\nCopyright (c) 2021 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) by Abramo Bagnara <abramo@alsa-project.org>\nCopyright (c) by Jaroslav Kysela <perex@perex.cz>, Creative Labs, Inc.\nCopyright (c) 2014-2015 Intel Corporation\nCopyright (c) 2019 Red Hat Inc.",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/alsa-lib@1.2.6.1-1ubuntu1.1",
      "description": "The Advanced Linux Sound Architecture (ALSA) provides audio and MIDI functionality to the Linux operating system. ALSA has the following significant features: \r\r\n* Efficient support for all types of audio interfaces, from consumer sound cards to professional multichannel audio interfaces. \r\r\n* Fully modularized sound drivers. \r\r\n* SMP and thread-safe design. \r\r\n* User space library (alsa-lib) to simplify application programming and provide higher level functionality. \r\r\n* Support for the older Open Sound System (OSS) API, providing binary compatibility for most OSS programs.",
      "supplier": {
        "url": [
          "https://www.alsa-project.org/wiki/Main_Page"
        ]
      }
    },
    {
      "name": "Advanced Linux Sound Architecture (ALSA)",
      "bom-ref": "Advanced Linux Sound Architecture (ALSA)",
      "type": "library",
      "version": "v1.2.6",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1995-2014, 2016, 2018-2020 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2005, 2008-2020 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2009-2020 Free Software Foundation, Inc. \nCopyright (c) 1996-2020 Free Software Foundation, Inc.\nCopyright (c) 1999-2000 Takashi Iwai\nCopyright (c) 2000-2004 James Courtier-Dutton\nCopyright (c) 2003 Greg Kroah-Hartman <greg@kroah.com>\nCopyright (c) 2003 by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2004-2006 Kay Sievers <kay.sievers@vrfy.org>\nCopyright (c) 2005 Nathan Hurst \nCopyright (c) 2005-2006 Kay Sievers <kay.sievers@vrfy.org>\nCopyright (c) 2008-2010 SlimLogic Ltd\nCopyright (c) 2010 Red Hat Inc. \nCopyright (c) 2010 Texas Instruments Inc.\nCopyright (c) 2010 Wolfson Microelectronics PLC\nCopyright (c) 2013-2016 Intel Corporation\nCopyright (c) 2015 Caleb Crome\nCopyright (c) 2019 Red Hat Inc. * Authors: Jaroslav Kysela <perex@perex.cz> */\nCopyright (c) year name of author\nCopyright (c) 1874 Lewis Carroll\nCopyright (c) 1998,1999 Tim Janik * Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1999 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 1999-2000 by Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2004-2006 Clemens Ladisch <clemens@ladisch.de> *\nCopyright (c) 2009-2010 Clemens Ladisch <clemens@ladisch.de>\nCopyright (c) 2010 by Jaroslav Kysela <perex@perex.cz> * * Author: Jaroslav Kysela <perex@perex.cz>\nCopyright (c) 2018 Takashi Sakamoto <o-takashi@sakamocchi.jp>\nCopyright (c) Clemens Ladisch <clemens@ladisch.de>\nCopyright (c) by Abramo Bagnara <abramo@alsa-project.org> * Jaroslav Kysela <perex@perex.cz> *\nCopyright (c) by Jaroslav Kysela <perex@perex.cz> * Based on vplay program by Michael Beck *\nCopyright (c) by Jaroslav Kysela <perex@perex.cz>, * Greg Kroah-Hartman <greg@kroah.com>, * Kay Sievers <kay.sievers@vrfy.org> *\nCopyright (c) by Takashi Iwai <tiwai@suse.de>\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>\nCopyright (c) 2010-2011 Texas Instruments Incorporated,\nCopyright (c) 2014-2015 Intel Corporation\nCopyright (c) 2019 Red Hat Inc.\nCopyright (c) 2021 Intel Corporation\nCopyright (c) 1998-1999 Wichert Akkerman\nCopyright (c) 1998-2022 Jarsolav Kysela <perex@suse.cz> and others",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "purl": "pkg:deb/debian/alsa-utils@1.2.6-1",
      "description": "The Advanced Linux Sound Architecture (ALSA) provides audio and MIDI functionality to the Linux operating system. ALSA has the following significant features: \r\r\n* Efficient support for all types of audio interfaces, from consumer sound cards to professional multichannel audio interfaces. \r\r\n* Fully modularized sound drivers. \r\r\n* SMP and thread-safe design. \r\r\n* User space library (alsa-lib) to simplify application programming and provide higher level functionality. \r\r\n* Support for the older Open Sound System (OSS) API, providing binary compatibility for most OSS programs.",
      "supplier": {
        "url": [
          "https://www.alsa-project.org/wiki/Main_Page"
        ]
      }
    },
    {
      "name": "GLib",
      "bom-ref": "GLib",
      "type": "library",
      "version": "2.72.4",
      "copyright": "Copyright (c) 2019, 2021 Red Hat Inc.\nCopyright (c) 1991, 1992, 1996, 1997,1999,2004 Free Software Foundation, Inc.\nCopyright (c) 1995, A.M. Kuchling\nCopyright (c) 1995-1997, 1999 Peter Mattis, Red Hat, Inc.\nCopyright (c) 1995-1997, 2002 Peter Mattis, Red Hat, Inc.\nCopyright (c) 1995-1998 Peter Mattis, Spencer Kimball and Josh MacDonald\nCopyright (c) 1995-1999,2000,2001 Free Software Foundation, Inc.\nCopyright (c) 1995-2002 Free Software Foundation, Inc.\nCopyright (c) 1997, 1998 Tim Janik\nCopyright (c) 1997-1999, 2000-2001 Tim Janik and Red Hat, Inc.\nCopyright (c) 1998 Tim Janik\nCopyright (c) 1998 Tor Lillqvist\nCopyright (c) 1998, 1999 Tom Tromey\nCopyright (c) 1998, 1999, 2000 Tim Janik and Red Hat, Inc.\nCopyright (c) 1998, 2000 Tim Janik\nCopyright (c) 1998-1999 Tor Lillqvist\nCopyright (c) 1998-1999, 2000-2001 Tim Janik and Red Hat, Inc.\nCopyright (c) 1998-2000 Red Hat, Inc.\nCopyright (c) 1999 The Free Software Foundation\nCopyright (c) 1999, 2000 Scott Wimer\nCopyright (c) 1999, 2003 Red Hat Software\nCopyright (c) 2000 Eazel, Inc.\nCopyright (c) 2000 Sebastian Wilhelmi; University of Karlsruhe\nCopyright (c) 2001 Behdad Esfahbod.\nCopyright (c) 2001 Matthias Clasen <matthiasc@poet.de>\nCopyright (c) 2001, James Henstridge\nCopyright (c) 2003 Matthias Clasen\nCopyright (c) 2003 Noah Levitt\nCopyright (c) 2003 Red Hat, Inc.\nCopyright (c) 2003 Sebastian Wilhelmi\nCopyright (c) 2005 - 2006, Marco Barisione <marco@barisione.org>\nCopyright (c) 2005 Alexander Larsson <alexl@redhat.com>\nCopyright (c) 2005-2006 Imendio AB\nCopyright (c) 2008 Nokia Corporation. All rights reserved.\nCopyright (c) 2008 Novell, Inc.\nCopyright (c) 2014 Chun-wei Fan\nCopyright (c) 2014 Patrick Griffis\nCopyright (c) 2015 Garrett Regier <garrettregier@gmail.com>\nCopyright (c) 2021 Frederic Martinsons\nCopyright (c) 2021 Iain Lane, Xavier Claessens\nCopyright (c) 2022 Ryan Hope",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "cpe": "cpe:2.3:a:gnome:glib:2.72.4:*:*:*:*:*:*:*",
      "description": "GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.",
      "supplier": {
        "url": [
          "https://gitlab.gnome.org/GNOME/glib"
        ]
      }
    },
    {
      "name": "PulseAudio",
      "bom-ref": "PulseAudio",
      "type": "library",
      "version": "v15.99.1",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc.\nCopyright (c) 1991, 1999 Free Software Foundation, Inc.\nCopyright (c) 1994, 1996, 1997 Free Software Foundation, Inc. \nCopyright (c) 1994,96,97,98,99,2000,2001,2004 Free Software Foundation, Inc. \nCopyright (c) 1999 Tom Tromey\nCopyright (c) 2000 Red Hat, Inc.\nCopyright (c) 2000-2002 Richard W.E. Furse, Paul Barton-Davis,\nCopyright (c) 2001 Chris Bagwell \nCopyright (c) 2002-2003 Maxim Krasnyansky <maxk@qualcomm.com>\nCopyright (c) 2002-2007 Marcel Holtmann <marcel@holtmann.org>\nCopyright (c) 2003 Lennart Poettering <mzkzygbzna@0pointer.de>\nCopyright (c) 2004 Joe Marcus Clarke\nCopyright (c) 2004-2005 Henryk Ploetz <henryk@ploetzli.ch>\nCopyright (c) 2004-2010 Marcel Holtmann <marcel@holtmann.org>\nCopyright (c) 2005-2006 Brad Midgley <bmidgley@xmission.com>\nCopyright (c) 2006-2007 Pierre Ossman <ossman@cendio.se> for Cendio AB\nCopyright (c) 2006-2010 Nokia Corporation\nCopyright (c) 2008 Colin Guthrie\nCopyright (c) 2008 Hector Daniel Cabrera <h.daniel.cabrera@gmail.com>\nCopyright (c) 2008 Michael Ughetto <telimektar esraonline com>\nCopyright (c) 2008 Nokia Corporation\nCopyright (c) 2008 Pablo Martin-Gomez <pablo.martin-gomez@laposte.net>\nCopyright (c) 2008, 2009 Micha Pietsch <barney@fedoraproject.org>\nCopyright (c) 2009 A S Alam <aalam@users.sf.net>\nCopyright (c) 2009 Colin Guthrie\nCopyright (c) 2009 Corentin Perard <corentin.perard@gmail.com>\nCopyright (c) 2009 Fernando Gonzalez Blanco <fgonz@fedoraproject.org>\nCopyright (c) 2009 Jaswinder Singh <jsingh@redhat.com>\nCopyright (c) 2009 Josep Torn\nCopyright (c) 2009 Milo\nCopyright (c) 2009 Milo Casagrande <milo@ubuntu.com>\nCopyright (c) 2009 Nokia Corporation \nCopyright (c) 2009 Reinout van Schouwen <reinout@gmail.com>\nCopyright (c) 2009 Sandeep Shedmake <sshedmak@redhat.com>\nCopyright (c) 2009 Thalia Papoutsaki <saliyath@gmail.com>\nCopyright (c) 2009 Ville-Pekka Vainio <vpivaini@cs.helsinki.fi>\nCopyright (c) 2009 ario_santagiuliana <mario at marionline.it>\nCopyright (c) 2010 Google Inc. All rights reserved.\nCopyright (c) 2012 Canonical Ltd. Contact: Jyri Sarha <Jyri.Sarha@nokia.com>\nCopyright (c) 2012 Intel Corporation\nCopyright (c) 2014 Collabora Ltd. <http://www.collabora.co.uk/>\nCopyright (c) 2017 Peter Meerwald-Stadler <pmeerw@pmeerw.net> \nCopyright (c) 2018-2019 Pali Roh\nCopyright (c) 2020 Asymptotic <sanchayan@asymptotic.io>\nCopyright (c) DFS Deutsche Flugsicherung (2004, 2005). \nCopyright (c) Judith Pint\nCopyright (c) Kungliga Tekniska Hogskolan\nCopyright (c)1994,96,97,98,99,2000,2001,2004 Free Software Foundation, Inc.\nCopyright (c) 2004 Michael Niedermayer <michaelni@gmx.at> \nCopyright (c) 2013 The Chromium OS Authors. All rights reserved.\nCopyright (c) 2001-2003, 2006-2012 Free Software Foundation, Inc. \nCopyright (c) 2004 Joe Marcus Clarke\nCopyright (c) 2004-2009 Lennart Poettering\nCopyright (c) 2006 Diego Petten",
      "licenses": [
        {
          "license": {
            "name": "LGPL 2.1+"
          }
        }
      ],
      "purl": "pkg:deb/debian/pulseaudio@15.99.1%2Bdfsg1-1",
      "description": "PulseAudio is a networked sound server.\r\r\n\r\r\nFeatures\r\r\n - Module autoloading\r\r\n - Support for more than one sink/source\r\r\n - Good low latency behaviour\r\r\n - Very accurate latency measurement for playback and recording.\r\r\n - Client side latency interpolation\r\r\n - Embedabble into other software (the core is available as C library)\r\r\n - Completely asynchronous C API, complemented by two synchronous variants for simple use in synchronous applications\r\r\n  - Simple command line interface for reconfiguring the daemon while running\r\r\n - Flexible, implicit sample type conversion and resampling\r\r\n - \"Zero-Copy\" architecture\r\r\n - May be used to combine multiple sound cards to one (with sample rate adjustment)\r\r\n - Ability to fully synchronize multiple playback streams",
      "supplier": {
        "url": [
          "http://pulseaudio.org"
        ]
      }
    },
    {
      "name": "fontconfig\n",
      "bom-ref": "fontconfig\n",
      "type": "library",
      "version": "2.13.1",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1995-2003, 2005-2006, 2008-2014, 2016 Free Software\nCopyright (c) 1995-2014, 2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2005, 2008-2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2003, 2009-2016 Free Software Foundation, Inc.\nCopyright (c) 1996-2018 Free Software Foundation, Inc.\nCopyright (c) 1999 Richard Henderson <rth@redhat.com>\nCopyright (c) 2008 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2010 Reuben Thomas <rrt@sc3d.org>\nCopyright (c) 2011 Daniel Richard G. <skunk@iSKUNK.ORG>\nCopyright (c) 2000-2007 Keith Packard\nCopyright (c) 2000 Tuomas J. Lukka\nCopyright (c) 2000,2001,2002,2003,2004,2006,2007 Keith Packard\nCopyright (c) 2002-2003 by Juliusz Chroboczek\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2005 Patrick Lam\nCopyright (c) 2007 Chris Wilson\nCopyright (c) 2008 Danilo\nCopyright (c) 2008 Red Hat, Inc.\nCopyright (c) 2008,2009 Red Hat, Inc.\nCopyright (c) 2009,2010 Red Hat, Inc.\nCopyright (c) 2010 Behdad Esfahbod\nCopyright (c) 2011,2012,2013 Google, Inc.\nCopyright (c) 2012 Google, Inc.\nCopyright (c) 2012 Red Hat, Inc.\nCopyright (c) 2013 Akira TAGOH\nCopyright (c) 2013 Google, Inc.\nCopyright (c) 2013 Raimund Steger\nCopyright (c) 2014 Red Hat, Inc.\nCopyright (c) 2015, 2016, 2018 Akira TAGOH\nCopyright (c) 2010 Behdad Esfahbod\nCopyright (c) 2001,2003 Keith Packard\nCopyright (c) 2008,2009 Red Hat, Inc.\nCopyright (c) 2009 Roozbeh Pournader\nCopyright (c) 2012 Red Hat, Inc.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ]
    },
    {
      "name": "intel-gmmlib",
      "bom-ref": "intel-gmmlib",
      "type": "library",
      "version": "22.1.4",
      "copyright": "Copyright (c) 2010-2011 Dmitry Vyukov\nCopyright (c) 2012-2016 Victor Zverovich\nCopyright (c) 2015 David Schury, Gabi Melman\nCopyright (c) 2016 Gabi Melman.\nCopyright (c) 2003-2009 Google Inc. \nCopyright (c) 2015 Gabi Melman.\nCopyright (c) 2016 Alexander Dalshov.\nCopyright (c) 2016 Gabi Melman.\nCopyright (c) 2016 Kevin M. Godby (a modified version by spdlog).\nCopyright (c) 2016 spdlog\nCopyright (c) 2016-2021 Intel Corporation",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/intel-gmmlib@22.1.4-1.fc37?arch=i686",
      "description": "The Intel Graphics Memory Management Library provides device specific\r\nand buffer management for the Intel Graphics Compute Runtime for OpenCL\r\nand the Intel Media Driver for VAAPI.",
      "supplier": {
        "url": [
          "https://github.com/intel/gmmlib"
        ]
      }
    },
    {
      "name": "intel-gmmlib",
      "bom-ref": "intel-gmmlib",
      "type": "library",
      "version": "22.6.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The Intel Graphics Memory Management Library provides device specific\r\nand buffer management for the Intel Graphics Compute Runtime for OpenCL\r\nand the Intel Media Driver for VAAPI.",
      "supplier": {
        "url": [
          "https://github.com/intel/gmmlib"
        ]
      }
    },
    {
      "name": "intel-gpu-tools",
      "bom-ref": "intel-gpu-tools",
      "type": "library",
      "version": "1.26",
      "copyright": "Copyright (c) 2017 ARM Limited\nCopyright (c) 1999-2007 Brian Paul All Rights Reserved.\nCopyright (c) 2009 Eric Anholt <eric@anholt.net>\nCopyright (c) 2011 Texas Instruments\nCopyright (c) 2012 Google, Inc.\nCopyright (c) 2012 Russell King\nCopyright (c) 2015 Etnaviv Project\nCopyright (c) Intel Corp. 2006. \nCopyright (c) 1991, 1994, 1995, 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003 by The Internet Software Consortium and Rich Salz \nCopyright (c) 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011, 2012, 2013, 2014 by Internet Systems Consortium, Inc. \nCopyright (c) 2007 Dave Airlie <airlied@linux.ie>\nCopyright (c) 2007 Jakob Bornecrantz <wallbraker@gmail.com>\nCopyright (c) 2007-2008 Intel Corporation\nCopyright (c) 2007-2008 Tungsten Graphics, Inc., Cedar Park, TX., USA\nCopyright (c) 2008, 2013, 2016-2017, 2020, 2021,  Red Hat Inc.\nCopyright (c) 2011 Samsung Electronics Co., Ltd. * Authors:\nCopyright (c) 2012, Oracle and/or its affiliates. \nCopyright (c) 2012-2013, NVIDIA CORPORATION. \nCopyright (c) 2013-2020 Intel Corporation\nCopyright (c) 2020, The Linux Foundation. \nCopyright (c) 1998-1999 Precision Insight, Inc., Cedar Park, Texas.\nCopyright (c) 1998-1999, 2006 Tungsten Graphics, Inc., Cedar Park, Texas.\nCopyright (c) 1998-2003 VIA Technologies, Inc. All Rights Reserved.\nCopyright (c) 1999-2000 Precision Insight, Inc., Cedar Park, Texas.\nCopyright (c) 2000 VA Linux Systems, Inc., Fremont, California.\nCopyright (c) 2001-2003 S3 Graphics, Inc. All Rights Reserved.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/intel-gpu-tools@1.26-2",
      "description": "Debian is a free operating system (OS) for your computer. An operating system is the set of basic programs and utilities that make your computer run. Debian uses the Linux kernel (the core of an operating system), but most of the basic OS tools come from the GNU project; hence the name GNU/Linux.",
      "supplier": {
        "url": [
          "https://gitlab.freedesktop.org/drm/igt-gpu-tools"
        ]
      }
    },
    {
      "name": "intel/gmmlib",
      "bom-ref": "intel/gmmlib",
      "type": "library",
      "version": "22.8.2",
      "copyright": "Copyright (c) 2010-2011 Dmitry Vyukov. \nCopyright (c) 2012 - 2016, Victor Zverovich \nCopyright (c) 2015 David Schury, Gabi Melman\nCopyright (c) 2016 Gabi Melman.\nCopyright (c) 2016-2024 Intel Corporation\nCopyright (c) 2003, 2005-2009 Google Inc.\nCopyright (c) 2015 Gabi Melman.\nCopyright (c) 2016 Alexander Dalshov.\nCopyright (c) 2016 Gabi Melman.\nCopyright (c) 2016 Kevin M. Godby (a modified version by spdlog).\nCopyright (c) 2016 spdlog",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/intel/gmmlib"
        ]
      }
    },
    {
      "name": "intel/media-driver",
      "bom-ref": "intel/media-driver",
      "type": "library",
      "version": "25.3.4",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/opensuse/intel-media-driver@25.3.4-1.1?arch=x86_64",
      "supplier": {
        "url": [
          "https://github.com/intel/media-driver"
        ]
      }
    },
    {
      "name": "intel/vpl-gpu-rt",
      "bom-ref": "intel/vpl-gpu-rt",
      "type": "library",
      "version": "intel-onevpl-25.1.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "supplier": {
        "url": [
          "https://github.com/intel/vpl-gpu-rt"
        ]
      }
    },
    {
      "name": "intel/vpl-gpu-rt",
      "bom-ref": "intel/vpl-gpu-rt",
      "type": "library",
      "version": "intel-onevpl-25.3.4",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:github/intel/vpl-gpu-rt@intel-onevpl-25.3.4",
      "supplier": {
        "url": [
          "https://github.com/intel/vpl-gpu-rt"
        ]
      }
    },
    {
      "name": "jq",
      "bom-ref": "jq",
      "type": "library",
      "version": "1.6",
      "copyright": "Copyright (c) 1991, 1996, 2000, 2001 by Lucent Technologies.\nCopyright (c) 2012 Stephen Dolan",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/oracle/jq@1.6-2.0.1.el7?arch=x86_64",
      "description": "Command-line JSON processor",
      "supplier": {
        "url": [
          "http://stedolan.github.io/jq/"
        ]
      }
    },
    {
      "name": "libICE",
      "bom-ref": "libICE",
      "type": "library",
      "version": "1.0.10",
      "copyright": "Copyright (c) 1993, 1998 The Open Group",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:apk/alpine/libice-dev@1.0.10-r0?arch=mips64",
      "description": "This package provides debug information for package xorg-x11-libICE.\r\nDebug information is useful when developing applications that use this\r\npackage or when debugging this package.",
      "supplier": {
        "url": [
          "http://www.x.org"
        ]
      }
    },
    {
      "name": "libice-dev",
      "bom-ref": "libice-dev",
      "type": "library",
      "version": "1.0.10",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 2005, 2015, Oracle and/or its affiliates. \nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 1993, 1996, 1998 The Open Group\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2003 Keith Packard\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libice@1.0.10-1?epoch=2",
      "description": "X11 Inter-Client Exchange library (development headers)\r\nThis package provides the main interface to the X11 Inter-Client Exchange\r\nlibrary, which allows for communication of data between X clients.\r\n\r\nThis package contains the development headers for the library found in libice6.\r\nNon-developers likely have little use for this package.\r\n\r\nMore information about X.Org can be found at:\r\n<URL:http://www.X.org>\r\n\r\nThis module can be found at\r\ngit://anongit.freedesktop.org/git/xorg/lib/libICE",
      "supplier": {
        "url": [
          "http://tracker.debian.org/pkg/libice"
        ]
      }
    },
    {
      "name": "libpciaccess0",
      "bom-ref": "libpciaccess0",
      "type": "library",
      "version": "0.16",
      "copyright": "Copyright (c) 2007, Matthew Garrett <mjg59@srcf.ucam.org>\nCopyright (c) 2006 Eric Anholt \nCopyright (c) 2006, 2007 IBM Corporation \nCopyright (c) Mark Kettenis 2011\nCopyright (c) Robert Millan 2012\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2018 Free Software Foundation, Inc.\nCopyright (c) 2000 The XFree86 Project, Inc. \nCopyright (c) 2005, 2015, Oracle and/or its affiliates. \nCopyright (c) 2007 Paulo R. Zanoni, Tiago Vignatti\nCopyright (c) 2007, 2008, 2009, 2011, 2012, 2013 Oracle and/or its affiliates.\nCopyright (c) 2007, 2009, 2011, 2012, 2016 Oracle and/or its affiliates.\nCopyright (c) 2007, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2008 Alexandre Oliva\nCopyright (c) 2008 Andreas Schwab <schwab@suse.de>\nCopyright (c) 2008 Guido U. Draheim <guidod@gmx.de>\nCopyright (c) 2008 Juan Romero Pardines\nCopyright (c) 2008 Mark Kettenis\nCopyright (c) 2008 Stepan Kasal <kasal@ucw.cz>\nCopyright (c) 2008, 2011 Mark Kettenis\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Michael Lorenz\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2009 Tiago Vignatti\nCopyright (c) 2009, 2012 Samuel Thibault\nCopyright (c) 2010, Oracle and/or its affiliates. \nCopyright (c) 2017 Joan Lled\nCopyright (c) 2018 Damien Zammit\nCopyright (c) 2005, 2009, 2012 Red Hat, Inc\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/libpciaccess@0.16-0ubuntu1",
      "description": "Generic PCI access library for X\r\nProvides functionality for X to access the PCI bus and devices\r\nin a platform-independent way.",
      "supplier": {
        "url": [
          "http://cgit.freedesktop.org/xorg/lib/libpciaccess/"
        ]
      }
    },
    {
      "name": "libSM-devel",
      "bom-ref": "libSM-devel",
      "type": "library",
      "version": "1.2.3",
      "copyright": "Copyright (c) 1993, 1998 The Open Group Permission",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The X.Org X11 SM (Session Management) development package.",
      "supplier": {
        "url": [
          "http://www.x.org"
        ]
      }
    },
    {
      "name": "libva-utils",
      "bom-ref": "libva-utils",
      "type": "library",
      "version": "2.22.0",
      "copyright": "Copyright (c) 2007-2022 Intel Corporation\nCopyright (c) 2000 The NetBSD Foundation, Inc.\nCopyright (c) 2002 Todd C. Miller <Todd.Miller@courtesan.com>\nCopyright (c) 2006, Luc Saillard <luc@saillard.org>\nCopyright (c) 2010 The WebM project authors.\nCopyright (c) 2018 Georg Ottinger\nCopyright (c) 2003, 2005-2009, 2015 Google Inc.\nCopyright (c) Microsoft Corporation",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The libva-utils package contains tools that are provided as part\r\nof libva, including the vainfo tool for determining what (if any)\r\nlibva support is available on a system.",
      "supplier": {
        "url": [
          "http://freedesktop.org/wiki/Software/vaapi"
        ]
      }
    },
    {
      "name": "libvpl",
      "bom-ref": "libvpl",
      "type": "library",
      "version": "2.14.0",
      "copyright": "Copyright (c) 2004, 2006 The Linux Foundation and its contributors.\nCopyright (c) 2020-2022 Intel Corporation\nCopyright (c) 2005-2010, 2013, 2015, 2018-2021 Google Inc. ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The oneAPI Video Processing Library (oneVPL) provides a single video processing\r\nAPI for encode, decode, and video processing that works across a wide range of\r\naccelerators.",
      "supplier": {
        "url": [
          "https://intel.github.io/libvpl/latest/index.html"
        ]
      }
    },
    {
      "name": "libvpl",
      "bom-ref": "libvpl",
      "type": "library",
      "version": "2.15.0",
      "copyright": "Copyright (c) 2004, 2006 The Linux Foundation and its contributors.\nCopyright (c) 2020-2023 Intel Corporation\nCopyright (c) 2005-2010, 2013, 2015, 2018-2021 Google Inc.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The oneAPI Video Processing Library (oneVPL) provides a single video processing\r\nAPI for encode, decode, and video processing that works across a wide range of\r\naccelerators.",
      "supplier": {
        "url": [
          "https://intel.github.io/libvpl/latest/index.html"
        ]
      }
    },
    {
      "name": "libXext",
      "bom-ref": "libXext",
      "type": "library",
      "version": "1.3.4",
      "copyright": "Copyright (c) 2007-2008 Peter Hutterer\nCopyright (c) 1994, 1995 Hewlett-Packard Company\nCopyright (c) 1996 Digital Equipment Corporation, Maynard, Massachusetts.\nCopyright (c) 1997 by Silicon Graphics Computer Systems, Inc.\nCopyright (c) 1986, 1987, 1988 by Hewlett-Packard Corporation\nCopyright (c) 1986, 1987, 1988, 1998 The Open Group\nCopyright (c) 1989, 1996, 1998 The Open Group\nCopyright (c) 1991, 1993, 1994, 1998 The Open Group\nCopyright (c) 1991,1993 by Digital Equipment Corporation, Maynard, Massachusetts, and Olivetti Research Limited, Cambridge, England. ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:apk/alpine/libxext-dev@1.3.4-r0?arch=armv7",
      "description": "This package provides debug information for package xorg-x11-libXext.\r\nDebug information is useful when developing applications that use this\r\npackage or when debugging this package.",
      "supplier": {
        "url": [
          "http://xorg.freedesktop.org/"
        ]
      }
    },
    {
      "name": "libxext-dev",
      "bom-ref": "libxext-dev",
      "type": "library",
      "version": "1.3.4",
      "copyright": "Copyright (c) 2007-2008 Peter Hutterer\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 1989 X Consortium, Inc. and Digital Equipment Corporation.\nCopyright (c) 1992 X Consortium, Inc. and Intergraph Corporation.\nCopyright (c) 1993 X Consortium, Inc. and Silicon Graphics, Inc.\nCopyright (c) 1994, 1995 Hewlett-Packard Company\nCopyright (c) 1994, 1995 X Consortium, Inc. and Hewlett-Packard Company.\nCopyright (c) 1996 Digital Equipment Corporation, Maynard, Massachusetts.\nCopyright (c) 1997 by Silicon Graphics Computer Systems, Inc.\nCopyright (c) 1999, 2005, 2006, 2013, Oracle and/or its affiliates.\nCopyright (c) 1999, 2005, 2006, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2005, 2015, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2013 Gabriele Svelto <gabriele.svelto@gmail.com>\nCopyright (c) 1986, 1987, 1988 by Hewlett-Packard Corporation\nCopyright (c) 1986, 1987, 1988, 1989, 1994, 1998 The Open Group\nCopyright (c) 1986, 1987, 1988, 1998 The Open Group\nCopyright (c) 1991, 1993, 1994, 1998 The Open Group\nCopyright (c) 1991,1993 by Digital Equipment Corporation, Maynard, Massachusetts, and Olivetti Research Limited, Cambridge, England. \nCopyright (c) 1992 Network Computing Devices\nCopyright (c) 1996, 1998 The Open Group\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 1996 Digital Equipment Corporation \nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libxext@1.3.4-1?epoch=2",
      "description": "X11 miscellaneous extensions library (development headers)\r\nlibXext provides an X Window System client interface to several extensions to\r\nthe X protocol.\r\n\r\nThe supported protocol extensions are:\r\n - DOUBLE-BUFFER (DBE), the Double Buffer extension;\r\n - DPMS, the VESA Display Power Management System extension;\r\n - Extended-Visual-Information (EVI), an extension for gathering extra\r\n   information about the X server's visuals;\r\n - LBX, the Low Bandwidth X extension;\r\n - MIT-SHM, the MIT X client/server shared memory extension;\r\n - MIT-SUNDRY-NONSTANDARD, a miscellaneous extension by MIT;\r\n - Multi-Buffering, the multi-buffering and stereo display extension;\r\n - SECURITY, the X security extension;\r\n - SHAPE, the non-rectangular shaped window extension;\r\n - SYNC, the X synchronization extension;\r\n - TOG-CUP, the Open Group's Colormap Utilization extension;\r\n - XC-APPGROUP, the X Consortium's Application Group extension;\r\n - XC-MISC, the X Consortium's resource ID querying extension;\r\n - XTEST, the X test extension (this is one of two client-side\r\n   implementations; the other is in the libXtst library, provided by the\r\n   libxtst6 package);\r\n\r\nlibXext also provides a small set of utility functions to aid authors of\r\nclient APIs for X protocol extensions.\r\n\r\nThis package contains the development headers for the library found in\r\nlibxext6. Non-developers likely have little use for this package.\r\n\r\nMore information about X.Org can be found at:\r\n<URL:http://www.X.org>\r\n\r\nThis module can be found at\r\ngit://anongit.freedesktop.org/git/xorg/lib/libXext",
      "supplier": {
        "url": [
          "http://tracker.debian.org/pkg/libxext"
        ]
      }
    },
    {
      "name": "libxkbcommon",
      "bom-ref": "libxkbcommon",
      "type": "library",
      "version": "1.4.0",
      "copyright": "Copyright (c) 2002-2007 Free Software Foundation, Inc.\nCopyright (c) 2004, Gregory Mokhin <mokhin@bog.msu.ru>\nCopyright (c) 2006 Erdal Ronah Permission \nCopyright (c) 2011 Joseph Adams <joeyadams3.14159@gmail.com>\nCopyright (c) Dmitry Golubev <lastguru@mail.ru>, 2003-2004\nCopyright (c) 1991, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 1993 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1993, 1994, 1995, 1996 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1994 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1996 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1999-2002 Vojtech Pavlik\nCopyright (c) 2019 - 2021, Ilan Schnell \nCopyright (c) 1985, 1987, 1988, 1990, 1998 The Open Group\nCopyright (c) 1985, 1987, 1990, 1998 The Open Group\nCopyright (c) 1987 by Digital Equipment Corporation, Maynard, Massachusetts \nCopyright (c) 1987, 1994, 1998 The Open Group Permission \nCopyright (c) 1988 by Digital Equipment Corporation, Maynard, Massachusetts.\nCopyright (c) 1988, 1991, 1998 The Open Group Permission\nCopyright (c) 1992 by Fuji Xerox Co., Ltd. Permission \nCopyright (c) 1992 by Oki Technosystems Laboratory, Inc.\nCopyright (c) 1994 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1996 by Joseph Moss\nCopyright (c) 2008, 2009 Dan Nicholson\nCopyright (c) 2008-2011 Kristian H\nCopyright (c) 2009 Dan Nicholson <dbn.lists@gmail.com>\nCopyright (c) 2009-2012, 2016 Daniel Stone\nCopyright (c) 2010 Francisco Jerez <currojerez@riseup.net>\nCopyright (c) 2010, 2012 Intel Corporation\nCopyright (c) 2011-2012 Intel Corporation\nCopyright (c) 2012 Collabora, Ltd.\nCopyright (c) 2012 Daniel Stone\nCopyright (c) 2012-2014, 2020-2021 Ran Benita <ran234@gmail.com>\nCopyright (c) 2013-2015, 2018-2020 Red Hat, Inc.\nCopyright (c) 2015 Kazunobu Kuriyama <kazunobu.kuriyama@nifty.com>\nCopyright (c) 2016 Daniel Stone <daniel@fooishbar.org>\nCopyright (c) 2016 Intel Corporation",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libxkbcommon@1.4.0-1",
      "description": "Library for handling keymaps, usable across X11, Wayland, no-window-system, and more.",
      "supplier": {
        "url": [
          "http://xkbcommon.org/"
        ]
      }
    },
    {
      "name": "libxrender1",
      "bom-ref": "libxrender1",
      "type": "library",
      "version": "0.9.10",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1994, 1995, 1996, 1999, 2000, 2001, 2002, 2004, 2005, 2006, 2007, 2008 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006,\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2013 Free Software Foundation, Inc.\nCopyright (c) 1997-2013 Free Software Foundation, Inc.\nCopyright (c) 1999-2013 Free Software Foundation, Inc.\nCopyright (c) 2001-2013 Free Software Foundation, Inc.\nCopyright (c) 2002-2013 Free Software Foundation, Inc.\nCopyright (c) 2003-2013 Free Software Foundation, Inc.\nCopyright (c) 2004 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2008 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2009 Free Software Foundation, Inc.\nCopyright (c) 2004-2013 Free Software Foundation, Inc.\nCopyright (c) 2006-2013 Free Software Foundation, Inc.\nCopyright (c) 2009-2013 Free Software Foundation, Inc.\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2005, 2015, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2000 SuSE, Inc.\nCopyright (c) 2000 SuSE, Inc. Permission \nCopyright (c) 2001,2003 Keith Packard\nCopyright (c) 2001,2003 Keith Packard Permission\nCopyright (c) 2002 Keith Packard\nCopyright (c) 2003 Keith Packard, Noah Levitt\nCopyright (c) 2004 Keith Packard\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libxrender@0.9.10-1?epoch=1",
      "description": "X Rendering Extension client library\r\nThe X Rendering Extension (Render) introduces digital image composition as\r\nthe foundation of a new rendering model within the X Window System.\r\nRendering geometric figures is accomplished by client-side tessellation into\r\neither triangles or trapezoids.  Text is drawn by loading glyphs into the\r\nserver and rendering sets of them.  The Xrender library exposes this\r\nextension to X clients.\r\n\r\nMore information about X.Org can be found at:\r\n<URL:http://www.X.org>\r\n\r\nThis module can be found at\r\ngit://anongit.freedesktop.org/git/xorg/lib/libXrender",
      "supplier": {
        "url": [
          "http://tracker.debian.org/pkg/libxrender"
        ]
      }
    },
    {
      "name": "mesa-utils",
      "bom-ref": "mesa-utils",
      "type": "library",
      "version": "8.4.0",
      "copyright": "Copyright (c) 2010, Robert Hooker <robert.hooker@canonical.com>\nCopyright (c) 2002-2007 IBM Corporation \nCopyright (c) 1993, 1994, Silicon Graphics, Inc. \nCopyright (c) 2013, Attachmate Corporation\nCopyright (c) 1994 X Consortium\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1999-2014 Brian Paul All Rights Reserved.\nCopyright (c) 1999 Shobhan Kumar Dutta\nCopyright (c) 2008 Red Hat, Inc \nCopyright (c) 2008 Tunsgten Graphics,Inc. \nCopyright (c) 2009 VMware, Inc.\nCopyright (c) 2009 Chia-I Wu <olv@0xlab.org> \nCopyright (c) 2010 LunarG Inc.\nCopyright (c) 2011 Ashima Arts.\nCopyright (c) 1991, 1992, 1993 Silicon Graphics, Inc.\nCopyright (c) 2002-2003 ATI Research\nCopyright (c) 2002-2006 3Dlabs Inc. Ltd.\nCopyright (c) 2003 Tungsten Graphics, Inc.\nCopyright (c) 2005-2007 David HENRY\nCopyright (c) 2008 Alexandre Oliva \nCopyright (c) 2008 Andreas Schwab <schwab@suse.de>\nCopyright (c) 2008 Guido U. Draheim <guidod@gmx.de>\nCopyright (c) 2008 Stepan Kasal <kasal@ucw.cz>\nCopyright (c) 2010, 2013 Krist\nCopyright (c) 2011 Dave Airlie\nCopyright (c) 1994, 1995, 1997 Mark J. Kilgard\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2010 Pauli Nieminen\nCopyright (c) 2011 Cooper Yuan\nCopyright (c) 2011 Kristian H\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>\ncopyright (c) 1997 by Nate Robins",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/mesa-demos@8.4.0-1",
      "description": "Miscellaneous Mesa GL utilities\r\nThis package provides several basic GL utilities built by Mesa, including\r\nglxinfo and glxgears.",
      "supplier": {
        "url": [
          "https://mesa3d.org/"
        ]
      }
    },
    {
      "name": "pipewire",
      "bom-ref": "pipewire",
      "type": "library",
      "version": "0.3.48",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/pipewire@0.3.48-1",
      "description": "PipeWire is a multimedia server for Linux and other Unix like operating\r\nsystems.",
      "supplier": {
        "url": [
          "https://pipewire.org/"
        ]
      }
    },
    {
      "name": "pipewire-jack-audio-connection-kit-devel",
      "bom-ref": "pipewire-jack-audio-connection-kit-devel",
      "type": "library",
      "version": "0.3.48",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:rpm/fedora/pipewire-jack-audio-connection-kit-devel@0.3.48-1.fc36?arch=armv7hl",
      "description": "This package provides development files for building JACK applications\r\nusing PipeWire's JACK library.",
      "supplier": {
        "url": [
          "https://pipewire.org/"
        ]
      }
    },
    {
      "name": "pugixml",
      "bom-ref": "pugixml",
      "type": "library",
      "version": "v1.13",
      "copyright": "Copyright (c) 2003, by Kristen Wegner (kristen@tima.net) \nCopyright (c) 2006-2022, by Arseny Kapoulkine (arseny.kapoulkine@gmail.com)\nCopyright (c) 2003, Kristen Wegner <kristen@tima.net>\nCopyright (c) 2013-2017, Vasudev Kamath <kamathvasudev@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/pugixml@1.13-0.1",
      "description": "PugiXML is a heavily refactored/reworked version of PugXML (basically, what is left is general idea of in-situ parsing, class naming schemes and parts of inner parsing loop). It is meant to be used for loading XML files where speed is important. \r\r\n\r\r\nCurrent version: 1.2 (May 1, 2012)",
      "supplier": {
        "url": [
          "http://pugixml.org/"
        ]
      }
    },
    {
      "name": "rapidjson",
      "bom-ref": "rapidjson",
      "type": "library",
      "version": "1.1.0",
      "copyright": "Copyright (c) 2015 THL A29 Limited, a Tencent company, and Milo Yip\nCopyright (c) 2002 JSON.org\nCopyright (c) 2006-2013 Alexander Chemeris\nCopyright (c) 2008-2010 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2012 Julian Berman\nCopyright (c) 2014 Rene Engelhard <rene@debian.org>\nCopyright (c) 2011-2014 Milo Yip",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/rapidjson@1.1.0-1",
      "description": "Rapidjson is a JSON parser and generator for C++. It was inspired by rapidxml.\r\r\n\r\r\n *  Rapidjson is small but complete. It supports both SAX and DOM style API. The SAX parser is only a half thousand lines of code.\r\r\n\r\r\n *  Rapidjson is fast. Its performance can be comparable to strlen(). It also optionally supports SSE2/SSE4.1 for acceleration.\r\r\n\r\r\n *  Rapidjson is self-contained. It does not depend on external libraries such as BOOST. It even does not depend on STL.\r\r\n\r\r\n  *  Rapidjson is memory friendly. Each JSON value occupies exactly 16/20 bytes for most 32/64-bit machines (excluding text string). By default it uses a fast memory allocator, and the parser allocates memory compactly during parsing.",
      "supplier": {
        "url": [
          "http://rapidjson.org/"
        ]
      }
    },
    {
      "name": "XCB",
      "bom-ref": "XCB",
      "type": "library",
      "version": "0.1.1",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1994, 1995, 1996, 1999, 2000, 2001, 2002, 2004, 2005, 2006, 2007, 2008 Free Software Foundation, Inc. \nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, # 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, \nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, # 2005, 2006, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, # 2006, 2007, 2008, 2009, 2010, 2011 Free Software \nCopyright (c) 1996, 1998, 2000, 2001, 2002, 2003, 2004, 2005, 2008, # 2011 Free Software Foundation, Inc.  \nCopyright (c) 2005, 2006, Oracle and/or its affiliates. \nCopyright (c) 2008 Tim Toolan <toolan@ele.uri.edu> \nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc \nCopyright (c) 2002 Keith Packard\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2013 Michael Stapelberg\nCopyright (c) 2013 Michael Stapelberg <michael\nCopyright (c) 2013 Michael Stapelberg <stapelberg@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/xcb-util-cursor@0.1.1-2~bpo70%2B1",
      "description": "X Window System protocol binding library.  Originally for C bindings, but now generalized to several other languages.  This is a lightweight replacement for the binding portion of Xlib, featuring thread transparency, XML extensibility, and a small and straightforward interface. \r\r\n\r\r\nThe version of Xlib currently being distributed by X.Org uses XCB for its transport; this allows XCB and Xlib calls to be freely mixed for ease in porting applications and toolkits.\r\r\n\r\r\nMost of the XCB C code is autogenerated from XML descriptions.  (This may be why Ohloh complains about the degree of code commenting.)",
      "supplier": {
        "url": [
          "https://xcb.freedesktop.org/"
        ]
      }
    },
    {
      "name": "XCB",
      "bom-ref": "XCB",
      "type": "library",
      "version": "0.3.9",
      "copyright": "Copyright (c) 2000 Keith Packard <keithp@keithp.com>\nCopyright (c) 2008-2012, Julien Danjou <acid@debian.org>\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2013 Free Software Foundation, Inc.\nCopyright (c) 2005, 2006, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2008 Tim Toolan <toolan@ele.uri.edu>\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2000 Keith Packard\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2006 Ian Osgood\nCopyright (c) 2006 Jamey Sharp.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:x:libxcb:0.3.9:*:*:*:*:*:*:*",
      "purl": "pkg:deb/ubuntu/xcb-util-renderutil@0.3.9-1build3",
      "description": "X Window System protocol binding library.  Originally for C bindings, but now generalized to several other languages.  This is a lightweight replacement for the binding portion of Xlib, featuring thread transparency, XML extensibility, and a small and straightforward interface. \r\r\n\r\r\nThe version of Xlib currently being distributed by X.Org uses XCB for its transport; this allows XCB and Xlib calls to be freely mixed for ease in porting applications and toolkits.\r\r\n\r\r\nMost of the XCB C code is autogenerated from XML descriptions.  (This may be why Ohloh complains about the degree of code commenting.)",
      "supplier": {
        "url": [
          "https://xcb.freedesktop.org/"
        ]
      }
    },
    {
      "name": "XCB",
      "bom-ref": "XCB",
      "type": "library",
      "version": "0.4.0",
      "copyright": "Copyright (c) 2008-2009 Julien Danjou <julien@danjou.info>\nCopyright (c) 2008-2012, Julien Danjou <acid@debian.org>\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006,\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2013 Free Software Foundation, Inc.\nCopyright (c) 1999-2013 Free Software Foundation, Inc.\nCopyright (c) 2001-2013 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2008 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2009 Free Software Foundation, Inc.\nCopyright (c) 2004-2013 Free Software Foundation, Inc.\nCopyright (c) 2006-2013 Free Software Foundation, Inc.\nCopyright (c) 2008-2009 Julien Danjou <julien@danjou.info>\nCopyright (c) 2009-2013 Free Software Foundation, Inc.\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2005, 2006, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2008 Tim Toolan <toolan@ele.uri.edu>\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2008 Bart Massey <bart@cs.pdx.edu>\nCopyright (c) 2008 Ian Osgood <iano@quirkster.com>\nCopyright (c) 2008 Jamey Sharp <jamey@minilop.net>\nCopyright (c) 2008 Josh Triplett <josh@freedesktop.org>\nCopyright (c) 2008-2009 Julien Danjou <julien@danjou.info>\nCopyright (c) 2008 Josh Triplett <josh@freedesktop.org>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:x:libxcb:0.4.0:*:*:*:*:*:*:*",
      "purl": "pkg:deb/ubuntu/xcb-util-image@0.4.0-2build2",
      "description": "X Window System protocol binding library.  Originally for C bindings, but now generalized to several other languages.  This is a lightweight replacement for the binding portion of Xlib, featuring thread transparency, XML extensibility, and a small and straightforward interface. \r\r\n\r\r\nThe version of Xlib currently being distributed by X.Org uses XCB for its transport; this allows XCB and Xlib calls to be freely mixed for ease in porting applications and toolkits.\r\r\n\r\r\nMost of the XCB C code is autogenerated from XML descriptions.  (This may be why Ohloh complains about the degree of code commenting.)",
      "supplier": {
        "url": [
          "https://xcb.freedesktop.org/"
        ]
      }
    },
    {
      "name": "XCB",
      "bom-ref": "XCB",
      "type": "library",
      "version": "0.4.1",
      "copyright": "Copyright (c) 2008-2012, Julien Danjou <acid@debian.org>\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994, 1995, 1996, 1999, 2000, 2001, 2002, 2004, 2005, 2006, 2007, 2008 Free Software Foundation, Inc.\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006,\nCopyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2013 Free Software Foundation, Inc.\nCopyright (c) 1999-2013 Free Software Foundation, Inc.\nCopyright (c) 2001-2013 Free Software Foundation, Inc.\nCopyright (c) 2004 Free Software Foundation, Inc.\nCopyright (c) 2004, 2005, 2007, 2008, 2009 Free Software Foundation, Inc.\nCopyright (c) 2004-2013 Free Software Foundation, Inc.\nCopyright (c) 2007-2008 Vincent Torri <vtorri@univ-evry.fr>\nCopyright (c) 2008 Arnaud Fontaine <arnau@debian.org>\nCopyright (c) 2009-2011 Arnaud Fontaine <arnau@debian.org>\nCopyright (c) 2009-2013 Free Software Foundation, Inc.\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2005, 2006, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2008 Tim Toolan <toolan@ele.uri.edu>\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2007-2008 Vincent Torri <vtorri@univ-evry.fr>\nCopyright (c) 2008 Arnaud Fontaine <arnau@debian.org>\nCopyright (c) 2008-2011 Arnaud Fontaine <arnau@debian.org>\nCopyright (c) 2009-2011 Arnaud Fontaine <arnau@debian.org>\nCopyright (c) 2007-2008 Vincent Torri <vtorri@univ-evry.fr>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/xcb-util-wm@0.4.1-1.2",
      "description": "X Window System protocol binding library.  Originally for C bindings, but now generalized to several other languages.  This is a lightweight replacement for the binding portion of Xlib, featuring thread transparency, XML extensibility, and a small and straightforward interface. \r\r\n\r\r\nThe version of Xlib currently being distributed by X.Org uses XCB for its transport; this allows XCB and Xlib calls to be freely mixed for ease in porting applications and toolkits.\r\r\n\r\r\nMost of the XCB C code is autogenerated from XML descriptions.  (This may be why Ohloh complains about the degree of code commenting.)",
      "supplier": {
        "url": [
          "https://xcb.freedesktop.org/"
        ]
      }
    },
    {
      "name": "XCB",
      "bom-ref": "XCB",
      "type": "library",
      "version": "1.14",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc.\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2015 Free Software Foundation, Inc.\nCopyright (c) 1996-2018 Free Software Foundation, Inc.\nCopyright (c) 2001-2004 Bart Massey and Jamey Sharp.\nCopyright (c) 2001-2006 Bart Massey, Jamey Sharp, and Josh Triplett.\nCopyright (c) 2001-2008 Bart Massey and Jamey Sharp.\nCopyright (c) 2001-2018 Free Software Foundation, Inc.\nCopyright (c) 2004, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2005, 2007, 2009, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2005, 2007-2008, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2005, 2007-2009, 2011-2015 Free Software Foundation, Inc.\nCopyright (c) 2004-2018 Free Software Foundation, Inc.\nCopyright (c) 2009 Jatin Golani.\nCopyright (c) 2009-2018 Free Software Foundation, Inc.\nCopyright (c) 2010-2015 Free Software Foundation, Inc.\nCopyright (c) 2011 Free Software Foundation, Inc.\nCopyright (c) 2014 Free Software Foundation, Inc.\nCopyright (c) 2005, 2015, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2005 Red Hat, Inc\nCopyright (c) 2004 Scott James Remnant <scott@netsplit.com>.\nCopyright (c) 2012-2015 Dan Nicholson <dbn.lists@gmail.com>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/debian/libxcb@1.14-3",
      "description": "X Window System protocol binding library.  Originally for C bindings, but now generalized to several other languages.  This is a lightweight replacement for the binding portion of Xlib, featuring thread transparency, XML extensibility, and a small and straightforward interface. \r\r\n\r\r\nThe version of Xlib currently being distributed by X.Org uses XCB for its transport; this allows XCB and Xlib calls to be freely mixed for ease in porting applications and toolkits.\r\r\n\r\r\nMost of the XCB C code is autogenerated from XML descriptions.  (This may be why Ohloh complains about the degree of code commenting.)",
      "supplier": {
        "url": [
          "https://xcb.freedesktop.org/"
        ]
      }
    },
    {
      "name": "xorg-x11",
      "bom-ref": "xorg-x11",
      "type": "library",
      "version": "1.7.5",
      "copyright": "Copyright (c) 1990 1991 Tektronix, Inc.\nCopyright (c) 1995 FUJITSU LIMITED\nCopyright (c) 1996 by Sebastien Marineau and Holger Veit\nCopyright (c) 1994 X Consortium\nCopyright (c) 1994-1996, 1999-2002, 2004-2011 Free Software Foundation, Inc\nCopyright (c) 1996-2001, 2003-2015 Free Software Foundation, Inc. \nCopyright (c) 1996-2021 Free Software Foundation, Inc. \nCopyright (c) 2003-2006 Jamey Sharp, Josh Triplett\nCopyright (c) 2003-2006,2008 Jamey Sharp, Josh Triplett\nCopyright (c) 2003-2021 Free Software Foundation, Inc. \nCopyright (c) 2004, 2011-2015 Free Software Foundation, Inc. \nCopyright (c) 2004-2005, 2007-2009, 2011-2015 Free Software\nCopyright (c) 2006-2021 Free Software Foundation, Inc. \nCopyright (c) 2008 Jamey Sharp, Josh Triplett\nCopyright (c) 2009-2021 Free Software Foundation, Inc. \nCopyright (c) 1993 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1993, 1995 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1995 David E. Wexelblat. \nCopyright (c) 1995 by Silicon Graphics Computer Systems, Inc. \nCopyright (c) 1999-2000 Free Software Foundation, Inc.\nCopyright (c) 2000 The XFree86 Project, Inc. Permission \nCopyright (c) 2005, 2015, Oracle and/or its affiliates. \nCopyright (c) 2005, Oracle and/or its affiliates. \nCopyright (c) 2007-2009, Troy D. Hanson \nCopyright (c) 2008 Alexandre Oliva \nCopyright (c) 2008 Andreas Schwab <schwab@suse.de>\nCopyright (c) 2008 Guido U. Draheim <guidod@gmx.de>\nCopyright (c) 2008 Otto Moerbeek <otto@drijf.net> \nCopyright (c) 2008 Stepan Kasal <kasal@ucw.cz>\nCopyright (c) 2009 Matteo Frigo\nCopyright (c) 2009 Mike Frysinger <vapier@gentoo.org>\nCopyright (c) 2009 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2010, Oracle and/or its affiliates. \nCopyright (c) 2013 Gabriele Svelto <gabriele.svelto@gmail.com> \nCopyright (c) 2015, Oracle and/or its affiliates. \nCopyright (c) 1984, 1985, 1987, 1989, 1998 The Open Group Permission \nCopyright (c) 1984-1994, 1998 The Open Group Permission \nCopyright (c) 1985, 1986, 1987, 1988, 1989, 1990, 1991 by Digital Equipment Corporation\nCopyright (c) 1985, 1986, 1987, 1988, 1989, 1990, 1991, 1994, 1996 X Consortium\nCopyright (c) 1985, 1986, 1987, 1991, 1998 The Open Group\nCopyright (c) 1987, 1988, 1990, 1993 by Digital Equipment Corporation, Maynard, Massachusetts, \nCopyright (c) 1988 by Wyse Technology, Inc., San Jose, Ca,",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/libx11@1.7.5-1?epoch=2",
      "description": "This package is a compatibility metapackage. It used to contain the\r\nX.Org sample applications.",
      "supplier": {
        "url": [
          "http://www.x.org/"
        ]
      }
    },
    {
      "name": "xorg-x11",
      "bom-ref": "xorg-x11",
      "type": "library",
      "version": "7.7+23ubuntu2",
      "copyright": "Copyright (c) 2007-2012 Canonical Ltd.\nCopyright (c) 1996 Stephen Early\nCopyright (c) 1996-2002 Software in the Public Interest, Inc.\nCopyright (c) 1997 Mark Eichin\nCopyright (c) 1998-2007 Branden Robinson <branden@debian.org>.\nCopyright (c) 2000, 2003, 2004 Progeny Linux Systems, Inc.\nCopyright (c) 2004-2005 Canonical Ltd.\nCopyright (c) 2005 David Nusinow\nCopyright (c) 2010-2011 Cyril Brulebois <kibi@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/xorg@7.7%2B23ubuntu2?epoch=1",
      "description": "This package is a compatibility metapackage. It used to contain the\r\nX.Org sample applications.",
      "supplier": {
        "url": [
          "http://www.x.org/"
        ]
      }
    },
    {
      "name": "xterm",
      "bom-ref": "xterm",
      "type": "library",
      "version": "372",
      "copyright": "Copyright (c) 1994 X Consortium\nCopyright (c) 2001 by Juliusz Chroboczek\nCopyright (c) 2001 by Juliusz Chroboczek\nCopyright (c) 1984-1994 X Consortium\nCopyright (c) 1984-1994 X Consortium\nCopyright (c) 1987 by Digital Equipment Corporation, Maynard, Massachusetts. \nCopyright (c) 1987, 1988 X Consortium Permission \nCopyright (c) 1987, 1988 by Digital Equipment Corporation, Maynard, Massachusetts. \nCopyright (c) 1988,1989 The Open Group Permission\nCopyright (c) 1992-2001 Free Software Foundation, Inc.\nCopyright (c) 1992-2017 Free Software Foundation, Inc.\nCopyright (c) 1996-2018,2019 by Thomas E. Dickey \nCopyright (c) 1996-2021,2022 by Thomas E. Dickey \nCopyright (c) 1996-2021,2022 by Thomas E. Dickey\nCopyright (c) 1997-2011,2012 by Thomas E. Dickey \nCopyright (c) 1997-2012,2020 by Thomas E. Dickey\nCopyright (c) 1997-2019,2020 by Thomas E. Dickey\nCopyright (c) 1997-2020,2021 by Thomas E. Dickey \nCopyright (c) 1997-2021,2022 by Thomas E. Dickey\nCopyright (c) 1997-2021,2022 by Thomas E. Dickey \nCopyright (c) 1997-2021,2022 by Thomas E. Dickey \nCopyright (c) 1997-2022 by Thomas E. Dickey\nCopyright (c) 1998 by Jason Bacon <acadix@execpc.com> \nCopyright (c) 1998-2001,2006 by Thomas E. Dickey \nCopyright (c) 1998-2006,2016 by Thomas E. Dickey \nCopyright (c) 1998-2019,2020 by Thomas E. Dickey \nCopyright (c) 1998-2020,2021 by Thomas E. Dickey \nCopyright (c) 1998-2021,2022 by Thomas E. Dickey \nCopyright (c) 1999 by Steve Wall\nCopyright (c) 1999 by Todd Larason\nCopyright (c) 1999-2000 by Steve Wall\nCopyright (c) 1999-2002,2007 by Thomas E. Dickey \nCopyright (c) 1999-2005,2007 by Thomas E. Dickey\nCopyright (c) 1999-2008,2010 by Thomas E. Dickey \nCopyright (c) 1999-2014,2016 by Thomas E. Dickey\nCopyright (c) 1999-2014,2017 by Thomas E. Dickey \nCopyright (c) 1999-2016,2017 by Thomas E. Dickey\nCopyright (c) 1999-2018,2020 by Thomas E. Dickey\nCopyright (c) 1999-2019,2020 by Thomas E. Dickey \nCopyright (c) 1999-2020,2021 by Thomas E. Dickey \nCopyright (c) 1999-2021,2022 by Thomas E. Dickey \nCopyright (c) 1999-2021,2022 by Thomas E. Dickey\nCopyright (c) 2000-2005,2017 by Thomas E. Dickey\nCopyright (c) 2000-2018,2019 by Thomas E. Dickey\nCopyright (c) 2000-2018,2020 by Thomas E. Dickey \nCopyright (c) 2000-2019,2020 by Thomas E. Dickey \nCopyright (c) 2000-2020,2021 by Thomas E. Dickey \nCopyright (c) 2000-2021,2022 by Thomas E. Dickey \nCopyright (c) 2001, 2004 Branden Robinson\nCopyright (c) 2001-2020,2021 by Thomas E. Dickey \nCopyright (c) 2001-2021,2022 by Thomas E. Dickey \nCopyright (c) 2002 by Steve Wall\nCopyright (c) 2002-2016,2017 by Thomas E. Dickey Markus Kuhn \nCopyright (c) 2002-2017,2021 by Thomas E. Dickey \nCopyright (c) 2002-2019,2020 by Thomas E. Dickey\nCopyright (c) 2002-2019,2021 by Thomas E. Dickey \nCopyright (c) 2002-2020,2021 by Thomas E. Dickey\nCopyright (c) 2002-2021,2022 by Thomas E. Dickey \nCopyright (c) 2002-2021,2022 by Thomas E. Dickey \nCopyright (c) 2003-2021,2022 by Thomas E. Dickey \nCopyright (c) 2004-2005,2007 by Thomas E. Dickey \nCopyright (c) 2004-2014,2017 by Thomas E. Dickey\nCopyright (c) 2004-2018,2019 by Thomas E. Dickey \nCopyright (c) 2006-2014,2018 by Thomas E. Dickey \nCopyright (c) 2006-2021,2022 by Thomas E. Dickey \nCopyright (c) 2006-2021,2022 by Thomas E. Dickey \nCopyright (c) 2007 by Thomas E. Dickey \nCopyright (c) 2007-2011,2013 by Thomas E. Dickey ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:invisible-island:xterm:372:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/xterm@372-1",
      "description": "The xterm program is a terminal emulator for the X Window System. It provides DEC VT102 and Tektronix 4014 compatible terminals for programs that can't use the window system directly.",
      "supplier": {
        "url": [
          "https://invisible-island.net/xterm/"
        ]
      }
    },
    {
      "name": "NSS",
      "bom-ref": "NSS",
      "type": "library",
      "version": "3.98",
      "copyright": "Copyright (c) 1995-2024 Jean-loup Gailly and Mark Adler\nCopyright (c) 2016-2022 INRIA, CMU and Microsoft Corporation\nCopyright (c) 1991, 1993, 1994 The Regents of the University of California.\nCopyright (c) 1994-2000 Netscape Communications Corporation.\nCopyright (c) 1995-2004 Jean-loup Gailly and Mark Adler\nCopyright (c) 1994-1999 RSA Security Inc.\nCopyright (c) 1995-1996 Jean-loup Gailly and Mark Adler\nCopyright (c) 1995-1996 Jean-loup Gailly.\nCopyright (c) 1995-2003, 2010 Mark Adler\nCopyright (c) 1995-2003, 2010, 2014, 2016 Jean-loup Gailly, Mark Adler\nCopyright (c) 1995-2005, 2010 Mark Adler\nCopyright (c) 1995-2005, 2014, 2016 Jean-loup Gailly, Mark Adler\nCopyright (c) 1995-2011, 2016 Mark Adler\nCopyright (c) 1995-2017 Jean-loup Gailly\nCopyright (c) 1995-2022 Mark Adler\nCopyright (c) 1995-2024 Jean-loup Gailly, Mark Adler\nCopyright (c) 1995-2024 Mark Adler\nCopyright (c) 1987, 1993 * The Regents of the University of California. \nCopyright (c) 1988, 1993 * The Regents of the University of California. \nCopyright (c) 1990, 1993, 1994 * The Regents of the University of California. \nCopyright (c) 2006, CRYPTOGAMS by <appro@openssl.org>\nCopyright (c) 2015-2016 the fiat-crypto authors (see the AUTHORS file).\nCopyright (c) 2015-2021 the fiat-crypto authors (see the AUTHORS file).\nCopyright (c) 2016-2022 INRIA, CMU and Microsoft Corporation\nCopyright (c) 2020 Luis Rivera-Zamarripa, Jes\nCopyright (c) 2022-2023 HACL\nCopyright (c) INRIA and Microsoft Corporation. All rights reserved.\nCopyright (c) 1995-2024 Jean-loup Gailly and Mark Adler\nCopyright (c) 1995-2024 Mark Adler\nCopyright (c) 2004-2005 Sun Microsystems, Inc. All rights reserved.\nCopyright (c) 2005 Sun Microsystems, Inc. All rights reserved.\nCopyright (c) 2005-2013 Google Inc.\nCopyright (c) 2014 Mozilla Contributors\nCopyright (c) 2015 Google Inc. All rights reserved.\nCopyright (c) 2016 Mozilla Contributors\nCopyright (c) 2018 Google LLC. All rights reserved.\nCopyright (c) 2018 Mozilla Contributors\nCopyright (c) 2019-2021 Google LLC. All Rights Reserved.\nCopyright (c) 2013-2014 Intel Corp.\nCopyright (c) 1995-2004 Jean-loup Gailly and Mark Adler\nCopyright (c) D. Richard Hipp <drh@hwaci.com>",
      "licenses": [
        {
          "license": {
            "name": "Mozilla Public License 2.0"
          }
        }
      ],
      "description": "Network Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications. Applications built with NSS can support SSL v2 and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3 certificates, and other security standards.",
      "supplier": {
        "url": [
          "https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS"
        ]
      }
    },
    {
      "name": "Vim",
      "bom-ref": "Vim",
      "type": "library",
      "version": "8.2.3995",
      "copyright": "Copyright (c) 1984 Peter da Silva, the Mad Australian,\nCopyright (c) 1998,1999 by Marcin Dalecki <martin@dalecki.de>\nCopyright (c) 1998,1999,2000 by Marcin Dalecki <martin@dalecki.de> \nCopyright (c) 2001,2005 by Marcin Dalecki <martin@dalecki.de> \nCopyright (c) 2002,2003 Jason Hildebrand <jason@peaceworks.ca> * Daniel Elstner <daniel.elstner@gmx.net> \nCopyright (c) 2002,2005 by Marcin Dalecki <martin@dalecki.de> \nCopyright (c) 1995-1998 Microsoft Corporation. \nCopyright (c) Gaspar Sinai <gsinai@yudit.org> \nCopyright (c) Michael Schroeder, Juergen Weigert\nCopyright (c) 1989-95 GROUPE BULL\nCopyright (c) 1991, 1999 Free Software Foundation, Inc.\nCopyright (c) 1994 X Consortium\nCopyright (c) 1997 Heiko Erhardt VisVim\nCopyright (c) 2000, Stephen P. Wall \nCopyright (c) 2001-2018 MURAOKA Taro <koron.kaoriya@gmail.com>,\nCopyright (c) 2003 Davide Libenzi\nCopyright (c) 2003,12 MURAOKA Taro <koron.kaoriya@gmail.com>\nCopyright (c) 2003-2016 Davide Libenzi, Johannes E. Schindelin\nCopyright (c) 2004,12 MURAOKA Taro <koron.kaoriya@gmail.com>\nCopyright (c) 2006 Martin Krischik\nCopyright (c) 2010, Google Inc.\nCopyright (c) 2013 MURAOKA Taro <koron.kaoriya@gmail.com>\nCopyright (c) 2021 Matthew T. Ihlenfield.\nCopyright (c) 1997 Christopher Payne 1997\nCopyright (c) Microsoft Corporation, 1992-2000.\nCopyright (c) 1986 by University of Toronto.\nCopyright (c) 1987 Oliver Laumann\nCopyright (c) 1987, 1988, 1994 X Consortium\nCopyright (c) 1987, Scott Ballantyne\nCopyright (c) 1989-1993 The Regents of the University of California.\nCopyright (c) 1993 Juergen Weigert (jnweiger@immd4.informatik.uni-erlangen.de) Michael Schroeder (mlschroe@immd4.informatik.uni-erlangen.de)\nCopyright (c) 1996, Paul Slootman \nCopyright (c) 2001 by Joerg Ziefle <joerg.ziefle@gmx.de>\nCopyright (c) 2002 E. I. DuPont de Nemours and Company, Inc\nCopyright (c) 2008 Paul Evans <leonerd@leonerd.org.uk>\nCopyright (c) 2012-2016 Hong Xu \nCopyright (c) 2013, Jeroen Ruigrok van der Werven, Eli Parra\nCopyright (c) 2014 - 2020 Apple Inc. and the Swift project authors\nCopyright (c) 2015-2017 K.Takata\nCopyright (c) 1987, 1988 by Digital Equipment Corporation, Maynard, Massachusetts. \nCopyright (c) 1989 Software Research Associates, Inc., Tokyo, Japan \nCopyright (c) 1992 by Mitch Trachtenberg\nCopyright (c) 1997 by Princeton University. \nCopyright (c) 1998 by Olaf Seibert. \nCopyright (c) 2000 Compaq Computer Corporation\nCopyright (c) 2000-2015 by Kevin Atkinson Permission \nCopyright (c) 2004-2020 Michael Geddes\nCopyright (c) 2008 Google Inc. \nCopyright (c) 2009 The Go Authors. All rights reserved.\nCopyright (c) 2009-2013 Steven Oliver\nCopyright (c) 2008-2013 Rufus Cable\nCopyright (c) 2004-2014 by Charles E. Campbell\nCopyright (c) 1986 University of Toronto\nCopyright (c) 1987, 1988, 1994 X Consortium\nCopyright (c) 1988-2003 Bram Moolenaar <Bram@vim.org>\nCopyright (c) 1989 Software Research Associates, Inc., Tokyo, Japan\nCopyright (c) 1989-95 GROUPE BULL\nCopyright (c) 1990-1998 by Juergen Weigert (jnweiger@informatik.uni-erlangen.de)\nCopyright (c) 1996, Paul Slootman\nCopyright (c) 2000 Compaq Computer Corporation\nCopyright (c) 2001 Joerg Ziefle <joerg.ziefle@gmx.de>\nCopyright (c) 2001-2022 Bram Moolenaar <Bram@vim.org>\nCopyright (c) 2003-2016 Davide Libenzi, Johannes E. Schindelin\n",
      "licenses": [
        {
          "license": {
            "name": "Vim License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:vim:vim:8.2.3995:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/vim@8.2.3995-1?epoch=2",
      "description": "Vim is an advanced text editor that seeks to provide the power of the de-facto Unix editor 'Vi', with a more complete feature set. It's useful whether you're already using vi or using a different editor.",
      "supplier": {
        "url": [
          "http://www.vim.org/"
        ]
      }
    },
    {
      "name": "zlib",
      "bom-ref": "zlib",
      "type": "library",
      "version": "1.3.1",
      "copyright": "Copyright (c) 1995-2022 Jean-loup Gailly and Mark Adler\nCopyright (c) 1995-2024 Jean-loup Gailly \nCopyright (c) 1998 - 2010 Gilles Vollant, Even Rouault, Mathias Svensson\nCopyright (c) 1998 by Bob Dellaca.\nCopyright (c) 1998,1999,2000 by Jacques Nomssi Nzali.\nCopyright (c) 1998-2010 Gilles Vollant (minizip) ( http://www.winimage.com/zLibDll/minizip.html ) \nCopyright (c) 2002-2004 Dmitriy Anisimkov\nCopyright (c) 2003 Cosmin Truta\nCopyright (c) 2007-2008 Even Rouault\nCopyright (c) 2009-2010 Mathias Svensson ( http://result42.com )\nCopyright (c) 1990-2000 Info-ZIP\nCopyright (c) 1997 Christian Michelsen Research AS \nCopyright (c) 1997,99 Borland Corp., \nCopyright (c) 2004 Henrik Ravn ",
      "licenses": [
        {
          "license": {
            "name": "zlib license"
          }
        }
      ],
      "description": "zlib is designed to be a free, general-purpose, legally unencumbered -- that is, not covered by any patents -- lossless data-compression library for use on virtually any computer hardware and operating system. The zlib data format is itself portable across platforms. Unlike the LZW compression method used in Unix compress(1) and in the GIF image format, the compression method currently used in zlib essentially never expands the data. (LZW can double or triple the file size in extreme cases.) zlib's memory footprint is also independent of the input data and can be reduced, if necessary, at some cost in compression.",
      "supplier": {
        "url": [
          "http://www.zlib.net/"
        ]
      }
    },
    {
      "name": "Airline - io.airlift:airline",
      "bom-ref": "Airline - io.airlift:airline",
      "type": "library",
      "version": "0.9",
      "copyright": "Copyright (c) 2010 the original author or authors",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/io.airlift/airline@0.9",
      "description": "Airline is a Java annotation-based framework for parsing Git like command line structures.",
      "supplier": {
        "url": [
          "https://github.com/airlift/airline"
        ]
      }
    },
    {
      "name": "Apache Commons Codec",
      "bom-ref": "Apache Commons Codec",
      "type": "library",
      "version": "1.11",
      "copyright": "Copyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/commons-codec/commons-codec@1.11",
      "description": "Apache Commons Codec (TM) software provides implementations of common encoders and decoders such as Base64, Hex, Phonetic and URLs.",
      "supplier": {
        "url": [
          "https://github.com/apache/commons-codec"
        ]
      }
    },
    {
      "name": "Apache Commons Codec",
      "bom-ref": "Apache Commons Codec",
      "type": "library",
      "version": "1.9",
      "copyright": "Copyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/commons-codec/commons-codec@1.9",
      "description": "Apache Commons Codec (TM) software provides implementations of common encoders and decoders such as Base64, Hex, Phonetic and URLs.",
      "supplier": {
        "url": [
          "https://github.com/apache/commons-codec"
        ]
      }
    },
    {
      "name": "Apache Commons IO",
      "bom-ref": "Apache Commons IO",
      "type": "library",
      "version": "2.11.0",
      "copyright": "Copyright (c) 2002-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:commons_io:2.11.0:-:*:*:*:*:*:*",
      "description": "Commons IO is a library of utilities to assist with developing IO functionality.\r\r\n\r\r\nThere are four main areas included:\r\r\n\r\r\n * Utility classes - with static methods to perform common tasks\r\r\n * Filters - various implementations of file filters\r\r\n * Comparators - various implementations of java.util.Comparator for files\r\r\n * Streams - useful stream, reader and writer implementations",
      "supplier": {
        "url": [
          "http://commons.apache.org/io/"
        ]
      }
    },
    {
      "name": "Apache Commons IO",
      "bom-ref": "Apache Commons IO",
      "type": "library",
      "version": "2.6",
      "copyright": "Copyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:commons_io:2.6:-:*:*:*:*:*:*",
      "purl": "pkg:maven/commons-io/commons-io@2.6",
      "description": "Commons IO is a library of utilities to assist with developing IO functionality.\r\r\n\r\r\nThere are four main areas included:\r\r\n\r\r\n * Utility classes - with static methods to perform common tasks\r\r\n * Filters - various implementations of file filters\r\r\n * Comparators - various implementations of java.util.Comparator for files\r\r\n * Streams - useful stream, reader and writer implementations",
      "supplier": {
        "url": [
          "http://commons.apache.org/io/"
        ]
      }
    },
    {
      "name": "Apache Commons Lang",
      "bom-ref": "Apache Commons Lang",
      "type": "library",
      "version": "3.12.0",
      "copyright": "Copyright (c) 2022, WSO2 LLC. (http://www.wso2.org)",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:commons_lang:3.12.0:-:*:*:*:*:*:*",
      "purl": "pkg:maven/org.wso2.orbit.org.apache.commons/commons-lang3@3.12.0.wso2v1",
      "supplier": {
        "url": [
          "https://github.com/apache/commons-lang"
        ]
      }
    },
    {
      "name": "Apache Commons Lang",
      "bom-ref": "Apache Commons Lang",
      "type": "library",
      "version": "3.7",
      "copyright": "Copyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:commons_lang:3.7:-:*:*:*:*:*:*",
      "purl": "pkg:maven/org.apache.commons/commons-lang3@3.7",
      "supplier": {
        "url": [
          "https://github.com/apache/commons-lang"
        ]
      }
    },
    {
      "name": "Apache Commons Logging",
      "bom-ref": "Apache Commons Logging",
      "type": "library",
      "version": "1.2",
      "copyright": "Copyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.lucee/commons-logging@1.2.0.L0001",
      "description": "Wrapper around a variety of logging API implementations.",
      "supplier": {
        "url": [
          "http://commons.apache.org/proper/commons-logging/"
        ]
      }
    },
    {
      "name": "Apache Commons Text",
      "bom-ref": "Apache Commons Text",
      "type": "library",
      "version": "1.10.0",
      "copyright": "Copyright (c) 2014-2020 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "Apache Commons Text - currently in sandbox mode",
      "supplier": {
        "url": [
          "https://github.com/apache/commons-text"
        ]
      }
    },
    {
      "name": "Apache HttpClient",
      "bom-ref": "Apache HttpClient",
      "type": "library",
      "version": "4.5.13",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.lucee/httpcomponents-httpclient@4.5.13",
      "description": "HttpClient is a HTTP/1.1 compliant HTTP agent implementation based on HttpCore. It also provides reusable components for client-side authentication, HTTP state management, and HTTP connection management. HttpComponents Client is a successor of and replacement for Commons HttpClient 3.x. Users of Commons HttpClient are strongly encouraged to upgrade.",
      "supplier": {
        "url": [
          "https://github.com/apache/httpcomponents-client"
        ]
      }
    },
    {
      "name": "Apache HttpClient",
      "bom-ref": "Apache HttpClient",
      "type": "library",
      "version": "4.5.2",
      "copyright": "Copyright (c) 2002 Kevin Atkinson (kevina@gnu.org) \nCopyright (c) 1999-2018 The Apache Software Foundation\nCopyright (c) 2010, David Paleino <dapal@debian.org> ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:httpclient:4.5.2:*:*:*:*:*:*:*",
      "purl": "pkg:maven/org.lucee/httpcomponents-httpclient@4.5.2",
      "description": "HttpClient is a HTTP/1.1 compliant HTTP agent implementation based on HttpCore. It also provides reusable components for client-side authentication, HTTP state management, and HTTP connection management. HttpComponents Client is a successor of and replacement for Commons HttpClient 3.x. Users of Commons HttpClient are strongly encouraged to upgrade.",
      "supplier": {
        "url": [
          "https://github.com/apache/httpcomponents-client"
        ]
      }
    },
    {
      "name": "Apache HTTPComponents Core",
      "bom-ref": "Apache HTTPComponents Core",
      "type": "library",
      "version": "4.4.13",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.lucee/httpcomponents-httpcore@4.4.13",
      "description": "Mirror of Apache HttpCore",
      "supplier": {
        "url": [
          "https://github.com/apache/httpcomponents-core"
        ]
      }
    },
    {
      "name": "Apache HTTPComponents Core",
      "bom-ref": "Apache HTTPComponents Core",
      "type": "library",
      "version": "4.4.4",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.lucee/httpcomponents-httpcore@4.4.4",
      "description": "Mirror of Apache HttpCore",
      "supplier": {
        "url": [
          "https://github.com/apache/httpcomponents-core"
        ]
      }
    },
    {
      "name": "Apache Log4j",
      "bom-ref": "Apache Log4j",
      "type": "library",
      "version": "2.17.2",
      "copyright": "Copyright (c) 1999-2022 The Apache Software Foundation\nCopyright (c) 2004 Jason Paul Kitchen\nCopyright (c) 2005-2006 Tim Fennell\nCopyright (c) 2011 LMAX Ltd.\nCopyright (c) Terracotta, Inc.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:apache:log4j:2.17.2:-:*:*:*:*:*:*",
      "purl": "pkg:maven/org.apache.logging.log4j/log4j-core@2.17.2",
      "supplier": {
        "url": [
          "http://logging.apache.org/log4j/"
        ]
      }
    },
    {
      "name": "Apache Log4j API",
      "bom-ref": "Apache Log4j API",
      "type": "library",
      "version": "2.17.2",
      "copyright": "Copyright (c) 1999-2022 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ]
    },
    {
      "name": "Apache Sling",
      "bom-ref": "Apache Sling",
      "type": "library",
      "version": "5.4.0",
      "copyright": "Copyright (c) 1999-2013, QOS.ch.\nCopyright (c) 2013, 2015, 2018, Oracle and/or its affiliates.\nCopyright (c) JS Foundation and other contributors\nCopyright (c) jQuery Foundation and other contributors\nCopyright (c) 1995-2013 Jean-loup Gailly and Mark Adler\nCopyright (c) 2014-2017 Vitaly Puzrin and Andrey Tupitsin\nCopyright (c) 2009-2016 Stuart Knightley\nCopyright (c) 2014 Stuart Knightley, David Duponchel ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.apache.sling/org.apache.sling.commons.log@5.4.0",
      "supplier": {
        "url": [
          "https://sling.apache.org"
        ]
      }
    },
    {
      "name": "Atlas :: Maven Project-Graph :: Identities Model",
      "bom-ref": "Atlas :: Maven Project-Graph :: Identities Model",
      "type": "library",
      "version": "1.1.3",
      "copyright": "Copyright (c) 1999-2012 QOS.ch. \nCopyright (c) 2012-2022 Red Hat, Inc. (nos-devel@redhat.com)\nCopyright (c) 2001-2017 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.commonjava.atlas/atlas-identities@1.1.3",
      "description": "CommonJava top-level parent POM.",
      "supplier": {
        "url": [
          "https://github.com/Commonjava/commonjava/atlas-parent/atlas-identities"
        ]
      }
    },
    {
      "name": "benchmark",
      "bom-ref": "benchmark",
      "type": "library",
      "version": "1.4.1",
      "copyright": "Copyright (c) 2015, 2018 Google Inc.\nCopyright (c) 2016 Ismael Jimenez Martinez. \nCopyright (c) 2017 Roman Lebedev.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:github/google/benchmark@v1.4.1",
      "description": "A microbenchmark support library.",
      "supplier": {
        "url": [
          "https://github.com/google/benchmark"
        ]
      }
    },
    {
      "name": "Caffeine cache",
      "bom-ref": "Caffeine cache",
      "type": "library",
      "version": "2.8.1",
      "copyright": "Copyright (c) 2014-2020 Ben Manes.\nCopyright (c) 2015, 2017 Gilga Einziger.\nCopyright (c) 2018 Gilga Einziger, Ben Manes and Ohad Eytan.\nCopyright (c) 2018 Ohad Eytan.\nCopyright (c) 2019 Omri Himelbrand. ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.ben-manes.caffeine/caffeine@2.8.1",
      "description": "Concurrent data-structures for Java",
      "supplier": {
        "url": [
          "https://github.com/ben-manes/caffeine"
        ]
      }
    },
    {
      "name": "Caffeine cache",
      "bom-ref": "Caffeine cache",
      "type": "library",
      "version": "2.9.3",
      "copyright": "Copyright (c) 2014-2019, 2023 Ben Manes",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.ben-manes.caffeine/caffeine@2.9.3.redhat-00003",
      "description": "Concurrent data-structures for Java",
      "supplier": {
        "url": [
          "https://github.com/ben-manes/caffeine"
        ]
      }
    },
    {
      "name": "commons-cli",
      "bom-ref": "commons-cli",
      "type": "library",
      "version": "1.4",
      "copyright": "Copyright (c) 2001-2017 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/commons-cli/commons-cli@1.4",
      "description": "Apache Commons CLI",
      "supplier": {
        "url": [
          "http://commons.apache.org/cli/"
        ]
      }
    },
    {
      "name": "commons-cli",
      "bom-ref": "commons-cli",
      "type": "library",
      "version": "1.5",
      "copyright": "Copyright (c) 2002-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/commons-cli/commons-cli@1.5",
      "description": "Apache Commons CLI",
      "supplier": {
        "url": [
          "http://commons.apache.org/cli/"
        ]
      }
    },
    {
      "name": "easymockobjenesis",
      "bom-ref": "easymockobjenesis",
      "type": "library",
      "version": "1.2",
      "copyright": "Copyright (c) 2006 BEA Systems, inc.\nCopyright (c) 2006-2009 Joe Walnes, Henri Tremblay, Leonardo Mesquita ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.objenesis/objenesis@1.2",
      "description": "Okay, it's pretty easy to instantiate objects in Java through standard reflection. However there are many cases where you need to go beyond what reflection provides.  For example, if there's no public constructor, you want to bypass the constructor code, or set final fields.  There are numerous clever (but fiddly) approaches to getting around this and this library provides a simple way to get at them.  You will find the official site here.",
      "supplier": {
        "url": [
          "http://objenesis.org"
        ]
      }
    },
    {
      "name": "EMPOA Swagger-Core",
      "bom-ref": "EMPOA Swagger-Core",
      "type": "library",
      "version": "2.0.0",
      "copyright": "Copyright (c) 2019 Jeremie Bresson ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.openapitools.empoa/empoa-swagger-core@2.0.0",
      "description": "Simple implementation of the Eclipse MicroProfile OpenAPI interfaces",
      "supplier": {
        "url": [
          "https://OpenAPITools.github.io/empoa/"
        ]
      }
    },
    {
      "name": "Generex",
      "bom-ref": "Generex",
      "type": "library",
      "version": "1.0.2",
      "copyright": "Copyright (c) 2014 y.mifrah",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.mifmif/generex@1.0.2",
      "description": "Generex Library for Strings generation based on RegExp",
      "supplier": {
        "url": [
          "https://github.com/mifmif/Generex/tree/master"
        ]
      }
    },
    {
      "name": "Google Java Format",
      "bom-ref": "Google Java Format",
      "type": "library",
      "version": "1.11.0",
      "copyright": "Copyright (c) 1995-2013 Jean-loup Gailly and Mark Adler\nCopyright (c) 2014-2017 Vitaly Puzrin and Andrey Tupitsin\nCopyright (c) 2013, 2015, 2018, Oracle and/or its affiliates.\nCopyright (c) 2004-present by the Checker Framework developers\nCopyright (c) JS Foundation and other contributors \nCopyright (c) jQuery Foundation and other contributors",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.google.googlejavaformat/google-java-format@1.11.0",
      "description": "A Java source code formatter that follows Google Java Style.",
      "supplier": {
        "url": [
          "https://github.com/google/google-java-format/google-java-format"
        ]
      }
    },
    {
      "name": "googlei18n/libphonenumber",
      "bom-ref": "googlei18n/libphonenumber",
      "type": "library",
      "version": "v8.11.1",
      "copyright": "Copyright (c) 2009-2015 The Libphonenumber Authors\nCopyright (c) 2013, 2015, 2017, Oracle and/or its affiliates.\nCopyright (c) 2005, 2013, 2015 jQuery Foundation, Inc. and other contributors",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.googlecode.libphonenumber/libphonenumber@8.11.1",
      "description": "Google's phone number handling library ported to node.js",
      "supplier": {
        "url": [
          "https://github.com/googlei18n/libphonenumber"
        ]
      }
    },
    {
      "name": "handlebars.java",
      "bom-ref": "handlebars.java",
      "type": "library",
      "version": "4.2.1",
      "copyright": "Copyright (c) 2011-2019 by Yehuda Katz\nCopyright (c) 2012-2015 Edgar Espina \nCopyright (c) 2001-2021 The Apache Software Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.jknack/handlebars@4.2.1",
      "description": "Logic-less and semantic templates with Java",
      "supplier": {
        "url": [
          "https://github.com/jknack/handlebars.java"
        ]
      }
    },
    {
      "name": "io.swagger:swagger-annotations",
      "bom-ref": "io.swagger:swagger-annotations",
      "type": "library",
      "version": "2.2.1",
      "copyright": "Copyright (c) 2016 SmartBear Software ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "Sonatype helps open source projects to set up Maven repositories on https://oss.sonatype.org/",
      "supplier": {
        "url": [
          "https://github.com/swagger-api/swagger-core/modules/swagger-annotations"
        ]
      }
    },
    {
      "name": "j2objc - Java to IOS",
      "bom-ref": "j2objc - Java to IOS",
      "type": "library",
      "version": "1.3.0.redhat-00001",
      "copyright": "Copyright (c) 2012 Google Inc.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "A Java to iOS Objective-C translation tool and runtime.",
      "supplier": {
        "url": [
          "http://j2objc.org"
        ]
      }
    },
    {
      "name": "Jackson-Datatype-ThreeTenBackport",
      "bom-ref": "Jackson-Datatype-ThreeTenBackport",
      "type": "library",
      "version": "2.10.0",
      "copyright": "Copyright (c) 2007- Tatu Saloranta, tatu.saloranta@iki.fi",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.joschi.jackson/jackson-datatype-threetenbp@2.10.0",
      "description": "Add-on module to support JSR-310 (Java 8 Date & Time API) data types with Java 7 (using the\r\n        ThreeTen backport).",
      "supplier": {
        "url": [
          "https://github.com/joschi/jackson-datatype-threetenbp"
        ]
      }
    },
    {
      "name": "Jackson-Datatype-ThreeTenBackport",
      "bom-ref": "Jackson-Datatype-ThreeTenBackport",
      "type": "library",
      "version": "2.12.2",
      "copyright": "Copyright (c) 1995-2013 Jean-loup Gailly and Mark Adler\nCopyright (c) 2014-2017 Vitaly Puzrin and Andrey Tupitsin \nCopyright (c) 2009-2016 Stuart Knightley\nCopyright (c) 2014 Stuart Knightley, David Duponchel\nCopyright (c) 2013, 2018, Oracle and/or its affiliates. \nCopyright (c) 2015, 2018, Oracle and/or its affiliates. \nCopyright (c) 2013 FasterXML.com\nCopyright (c) JS Foundation and other contributors\nCopyright (c) jQuery Foundation and other contributors\nCopyright (c) jQuery Foundation and other contributors \nCopyright (c) jQuery Foundation and other contributors \nCopyright (c) jQuery Foundation and other contributors",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.joschi.jackson/jackson-datatype-threetenbp@2.12.2",
      "description": "Add-on module to support JSR-310 (Java 8 Date & Time API) data types with Java 7 (using the\r\n        ThreeTen backport).",
      "supplier": {
        "url": [
          "https://github.com/joschi/jackson-datatype-threetenbp"
        ]
      }
    },
    {
      "name": "jakartaeevalidation",
      "bom-ref": "jakartaeevalidation",
      "type": "library",
      "version": "2.0.2",
      "copyright": "Copyright (c) author Dhanji R. Prasanna\nCopyright (c) author Emmanuel Bernard\nCopyright (c) author Gavin King\nCopyright (c) author Gerhard Petracek\nCopyright (c) author Guillaume Smet \nCopyright (c) author Gunnar Morling\nCopyright (c) author Hardy Ferentschik\nCopyright (c) author Sebastian Thomschke\nCopyright (c) 2019 Eclipse Foundation",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/jakarta.validation/jakarta.validation-api@2.0.2.redhat-00008",
      "description": "Jakarta Validation",
      "supplier": {
        "url": [
          "http://beanvalidation.org"
        ]
      }
    },
    {
      "name": "Java Native Access (JNA)",
      "bom-ref": "Java Native Access (JNA)",
      "type": "library",
      "version": "5.12.1",
      "copyright": "Copyright (c) 2007-2018 Timothy Wall\nCopyright (C) 1991, 1999 Free Software Foundation, Inc.\nCopyright (c) 2007 Wayne Meissner, All Rights Reserved\nCopyright (c) 2007-2015 Timothy Wall, All Rights Reserved\nCopyright (c) 2011 Timothy Wall, All Rights Reserved\nCopyright (c) 2012 Timothy Wall, All Rights Reserved\nCopyright (c) 2017-2019, 2021 Matthias Bl",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/net.java.dev.jna/jna@5.12.1",
      "description": "JNA provides Java programs easy access to native shared libraries (DLLs on Windows) without writing anything but Java code\u2014no JNI or native code is required. This functionality is comparable to Windows' Platform/Invoke and Python's ctypes. Access is dynamic at runtime without code generation.\r\r\n\r\r\nJNA's design aims to provide native access in a natural way with a minimum of effort. No boilerplate or generated code is required. While some attention is paid to performance, correctness and ease of use take priority.",
      "supplier": {
        "url": [
          "https://github.com/twall/jna"
        ]
      }
    },
    {
      "name": "Java Native Access (JNA)",
      "bom-ref": "Java Native Access (JNA)",
      "type": "library",
      "version": "5.5.0",
      "copyright": "Copyright (C) 1998 Geoffrey Keating\nCopyright (C) 1999, 2000, 2001, 2002 by Bruno Lowagie.\nCopyright (c) 2000, 2001, 2002 by Paulo Soares.\nCopyright (c) 2000-2004 Jason Hunter\nCopyright (c) 1999-2016 The Apache Software Foundation\nCopyright (c) 2000-2001 John Hornkvist\nCopyright (c) 1991, 1999, 2002-2004, 2006-2011 Free Software Foundation, Inc\nCopyright (c) 2002, 2009 Free Software Foundation, Inc. based on darwin.S by John Hornkvist\nCopyright (c) 2011 Kyle Moffett\nCopyright (c) 2004, 2008, 2011-2014 Anthony Green\nCopyright (c) 1996-2014 Anthony Green, Red Hat, Inc and others.\nCopyright (c) 2013 IBM\nCopyright (c) 1996-2005, 2007-2012 Red Hat, Inc. \nCopyright (c) 1998 Cygnus Solutions\nCopyright (c) 1998 Sun Microsystems, Inc. \nCopyright (c) 1998, 2012 Andreas Schwab\nCopyright (c) 2000 Hewlett Packard Company\nCopyright (c) 2000 The Open Healthcare Group \nCopyright (c) 2000, 2007 Software AG\nCopyright (c) 2000, Derek Petillo\nCopyright (c) 2000-2001 Jonathan Borden\nCopyright (c) 2000-2006, www.hamcrest.org \nCopyright (c) 2001 John Beniton\nCopyright (c) 2002 Ranjit Mathew\nCopyright (c) 2002 Roger Sayle\nCopyright (c) 2002 Extreme\nCopyright (c) 2002 JSON.org\nCopyright (c) 2002-2008, 2012 Kaz Kojima\nCopyright (c) 2002, 2007 Bo Thorsen <bo@suse.de>\nCopyright (c) 2002, Landmark Graphics Corp \nCopyright (c) 2003 Jakub Jelinek <jakub@redhat.com>\nCopyright (c) 2004 Renesas Technology\nCopyright (c) 2004 Simon Posnjak\nCopyright (c) 2005 - 2009 Taras Puchko\nCopyright (c) 2005 Axis Communications AB\nCopyright (c) 2006, Javolution (http://javolution.org)\nCopyright (c) 2006-2009 Valerio Proietti, <http://mad4milk.net/>\nCopyright (c) 2007 Olivier Chafik\nCopyright (c) 2007 Thomas Boerkel\nCopyright (c) 2007 Wayne Meissner\nCopyright (c) 2007-2018 Timothy Wall\nCopyright (c) 2008 Bj\nCopyright (c) 2008 David Daney\nCopyright (c) 2008-2009 Guido U. Draheim <guidod@gmx.de>\nCopyright (c) 2008 Matteo Frigo\nCopyright (c) 2008 Stefan Endrullis\nCopyright (c) 2008 Steven G. Johnson <stevenj@alum.mit.edu>\nCopyright (c) 2009 Bradley Smith <brad@brad-smith.co.uk>\nCopyright (c) 2009 Daniel Witte\nCopyright (c) 2009 Alan Jenkins <alan-jenkins@tuffmail.co.uk>\nCopyright (c) 2009, 2010, 2011, 2012 ARM Ltd.\nCopyright (c) 2010 CodeSourcery\nCopyright (c) 2010 EugineLev\nCopyright (c) 2010 Rhys Ulerich <rhys.ulerich@gmail.com>\nCopyright (c) 2010, 2013 Daniel Doubrovkine, Markus Karg\nCopyright (c) 2010, 2011 Plausible Labs Cooperative, Inc.\nCopyright (c) 2010, 2011 Daniel Doubrovkine\nCopyright (c) 2011 Denis Tulskiy\nCopyright (c) 2011 Maarten Bosmans <mkbosmans@gmail.com>\nCopyright (c) 2011, 2012 Tilera Corp.\nCopyright (c) 2012 Alexandre K. I. de Mendonca <alexandre.keunecke@gmail.com>\nCopyright (c) 2012 Alexandre K. I. de Mendonca <alexandre.keunecke@gmail.com>, Paulo Pizarro <paulo.pizarro@gmail.com>\nCopyright (c) 2012 Alan Hourihane\nCopyright (c) 2012 Thorsten Glaser\nCopyright (c) 2012, 2013 Tobias Wolf\nCopyright (c) 2012 Tsukasa Oi\nCopyright (c) 2012, 2013 Xilinx, Inc\nCopyright (c) 2013 Synopsys, Inc. (www.synopsys.com)\nCopyright (c) 2013 The Written Word, Inc.\nCopyright (c) 2013 Imagination Technologies Ltd.\nCopyright (c) 2013 Markus Karg\nCopyright (c) 2013 Mentor Graphics.\nCopyright (c) 2013 Miodrag Vallat. <miod@openbsd.org>\nCopyright (c) 2013 Ralf Hamberger, Markus Karg\nCopyright (c) 2013 Tensilica, Inc.\nCopyright (c) 2014 Dr David H. Akehurst (itemis)\nCopyright (c) 2014 Reinhard Pointner\nCopyright (c) 2014 Sebastian Macke <sebastian@macke.de>\nCopyright (c) 2015, 2016 Adam Marcionek\nCopyright (c) 2015 Andreas\nCopyright (c) 2015, 2017-2019 Daniel Widdis\nCopyright (c) 2015 Goldstein Lyor\nCopyright (c) 2015 Markus Bollig\nCopyright (c) 2015 Michael Freeman\nCopyright (c) 2016-2019 Matthias Bl\nCopyright (c) 2016 Minoru Sakamoto\nCopyright (c) 2017 Nicolas Cazottes\nCopyright (c) 2018 Roshan Muralidharan\nCopyright (c) 2018 Sebastian Staudt, Matthias Bl\nCopyright (c) 2018 V\nCopyright (c) 2019 Keve M\nCopyright (c) 1987 by Digital Equipment Corporation, Maynard, Massachusetts\nCopyright (c) 1987, 1994, 1998 The Open Group\nCopyright (c) 1998-2008 W3C (MIT, ERCIM, Keio)\nCopyright (c) 2001-2005 MetaStuff, Ltd.\nCopyright (c) 2002 The Codehaus.\nCopyright (c) 2010 Digital Rapids Corp.\nCopyright (c) 2014 Martin Steiger\nCopyright (c) Foteos Macrides",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/net.java.dev.jna/jna@5.5.0",
      "description": "JNA provides Java programs easy access to native shared libraries (DLLs on Windows) without writing anything but Java code\u2014no JNI or native code is required. This functionality is comparable to Windows' Platform/Invoke and Python's ctypes. Access is dynamic at runtime without code generation.\r\r\n\r\r\nJNA's design aims to provide native access in a natural way with a minimum of effort. No boilerplate or generated code is required. While some attention is paid to performance, correctness and ease of use take priority.",
      "supplier": {
        "url": [
          "https://github.com/twall/jna"
        ]
      }
    },
    {
      "name": "Joda Time",
      "bom-ref": "Joda Time",
      "type": "library",
      "version": "v2.10.8",
      "copyright": "Copyright (c) 2001-2017 Stephen Colebourne\nCopyright (c) 2002-2018, Joda.org \nCopyright (c) 2010, Torsten Werner <Torsten Werner <twerner@debian.org>",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/joda-time/joda-time@2.10.8",
      "description": "Joda-Time provides a quality replacement for the Java date and time classes. The design allows for multiple calendar systems, while still providing a simple API. The 'default' calendar is the ISO8601 standard which is used by XML. The Gregorian, Julian, Buddhist, Coptic and Ethiopic systems are also included, and we welcome further additions. Supporting classes include time zone, duration, format and parsing.",
      "supplier": {
        "url": [
          "http://joda-time.sourceforge.net/"
        ]
      }
    },
    {
      "name": "JSON Schema Validator",
      "bom-ref": "JSON Schema Validator",
      "type": "library",
      "version": "2.2.14",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/>\nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com) \nCopyright (c) 2004-2015 Paul R. Holser, Jr.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.java-json-tools/json-schema-validator@2.2.14.redhat-00001",
      "description": "A JSON Schema validation implementation in pure Java, which aims for correctness and performance, in that order",
      "supplier": {
        "url": [
          "https://github.com/fge/json-schema-validator"
        ]
      }
    },
    {
      "name": "json-patch",
      "bom-ref": "json-patch",
      "type": "library",
      "version": "1.13",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/>\nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com) ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.java-json-tools/json-patch@1.13",
      "description": "JSON Patch implementation in Java",
      "supplier": {
        "url": [
          "https://github.com/fge/json-patch"
        ]
      }
    },
    {
      "name": "json-schema-core",
      "bom-ref": "json-schema-core",
      "type": "library",
      "version": "1.2.14",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/>\nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com) \nCopyright (c) 2004-2015 Paul R. Holser, Jr.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.java-json-tools/json-schema-core@1.2.14",
      "description": "Core processing architecture for json-schema-validator",
      "supplier": {
        "url": [
          "https://github.com/java-json-tools/json-schema-core"
        ]
      }
    },
    {
      "name": "lambdaj",
      "bom-ref": "lambdaj",
      "type": "library",
      "version": "2.3.3",
      "copyright": "Copyright (c) 2000-2007, jMock.org\nCopyright (c) 2007 Mockito contributors \nCopyright (c) 2009-2010 Mario Fusco. \nCopyright (c) 2011 qqybk2l. ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.googlecode.lambdaj/lambdaj@2.3.3",
      "description": "lambdaj is a library that makes easier to address this issue by allowing to manipulate collections in a pseudo-functional and statically typed way. In our experience to iterate over collection, especially in nested loops, is often error prone and makes the code less readable. The purpose of this library is to alleviate these problems employing some functional programming techniques but without losing the static typing of java. We impose this last constraint to make refactoring easier and safer and allow the compiler to do its job.",
      "supplier": {
        "url": [
          "http://code.google.com/p/lambdaj/"
        ]
      }
    },
    {
      "name": "msg-simple",
      "bom-ref": "msg-simple",
      "type": "library",
      "version": "1.2",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/> \nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com) ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/com.github.java-json-tools/msg-simple@1.2",
      "description": "A lightweight, UTF-8 capable, printf() capable alternative to Java's ResourceBundle",
      "supplier": {
        "url": [
          "https://github.com/java-json-tools/msg-simple"
        ]
      }
    },
    {
      "name": "OpenAPI Style Validator - cli",
      "bom-ref": "OpenAPI Style Validator - cli",
      "type": "library",
      "version": "1.6",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/> \nCopyright (c) 2003, 2018 Oracle and/or its affiliates.\nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com)\nCopyright (c) 2018 Oracle and/or its affiliates. \nCopyright (c) 2001-2017 The Apache Software Foundation\nCopyright (c) 2004-2015 Paul R. Holser, Jr. ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "Command line interface to validate the style and standards of an OpenAPI specification",
      "supplier": {
        "url": [
          "https://openapitools.github.io/openapi-style-validator/"
        ]
      }
    },
    {
      "name": "OpenAPI Style Validator - cli",
      "bom-ref": "OpenAPI Style Validator - cli",
      "type": "library",
      "version": "1.8",
      "copyright": "Copyright (c) 2003, 2018 Oracle and/or its affiliates\nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com)\nCopyright (c) 2015. SmartBear Software Inc.",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.openapitools.openapistylevalidator/openapi-style-validator-cli@1.8",
      "description": "Command line interface to validate the style and standards of an OpenAPI specification",
      "supplier": {
        "url": [
          "https://openapitools.github.io/openapi-style-validator/"
        ]
      }
    },
    {
      "name": "openapi-generator (core library)",
      "bom-ref": "openapi-generator (core library)",
      "type": "library",
      "version": "6.0.0",
      "copyright": "Copyright (c) 2012 Twitter, Inc\nCopyright (c) 2014 Red Hat, Inc.\nCopyright (c) 2015 the original author or authors.\nCopyright (c) 2018-2021 OpenAPI-Generator Contributors (https://openapi-generator.tech)\nCopyright (c) 2018-2019 SmartBear Software ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "description": "Sonatype helps open source projects to set up Maven repositories on https://oss.sonatype.org/",
      "supplier": {
        "url": [
          "https://github.com/openapitools/openapi-generator/modules/openapi-generator"
        ]
      }
    },
    {
      "name": "openapi-generator (core library)",
      "bom-ref": "openapi-generator (core library)",
      "type": "library",
      "version": "6.6.0",
      "copyright": "Copyright (c) 2012 Julian Berman",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.openapitools/openapi-generator@6.6.0",
      "description": "Sonatype helps open source projects to set up Maven repositories on https://oss.sonatype.org/",
      "supplier": {
        "url": [
          "https://github.com/openapitools/openapi-generator/modules/openapi-generator"
        ]
      }
    },
    {
      "name": "uri-template",
      "bom-ref": "uri-template",
      "type": "library",
      "version": "0.10.0.redhat-00001",
      "copyright": "Copyright (c) 2007 Free Software Foundation, Inc. <http://fsf.org/> \nCopyright (c) 2014, Francis Galiegue (fgaliegue@gmail.com) ",
      "licenses": [
        {
          "license": {
            "name": "Apache License 2.0"
          }
        }
      ]
    },
    {
      "name": "any-lite",
      "bom-ref": "any-lite",
      "type": "library",
      "version": "0.4.0",
      "copyright": "Copyright (c) 2016-2018 Martin Moene",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "description": "any lite - Any objects in C++11 and later in a single-file header-only library",
      "supplier": {
        "url": [
          "https://github.com/martinmoene/any-lite"
        ]
      }
    },
    {
      "name": "POCO C++ Libraries",
      "bom-ref": "POCO C++ Libraries",
      "type": "library",
      "version": "1.12.4",
      "copyright": "Copyright (c) by Kevlin Henney. Modified for Poco\nCopyright (c) Kevlin Henney, 2000, 2001, 2002.\nCopyright (c) 2004-2020, 2022 Applied Informatics Software Engineering GmbH.\nCopyright (c) 1983, 1993 The Regents of the University of California.\nCopyright (c) 2001 by Andrei Alexandrescu\nCopyright (c) 2017 Rhodri James <rhodri@wildebeest.org.uk>\nCopyright (c) 2016 Thomas Beutlich <tc@tbeu.de>\nCopyright (c) 2022 Thijs Schreijer <thijs@thijsschreijer.nl>\nCopyright (c) Nicolai M. Josuttis 2001.\nCopyright (c) 2000-2005 Fred L. Drake, Jr. <fdrake@users.sourceforge.net>\nCopyright (c) 2016-2019 Sebastian Pipping <sebastian@pipping.org>\nCopyright (c) 2009-2013 Code Synthesis Tools CC.\nCopyright (c) 2016 Cristian Rodr\nCopyright (c) 2016-2022 Sebastian Pipping <sebastian@pipping.org>\nCopyright (c) 2001-2002 Greg Stein <gstein@users.sourceforge.net>\nCopyright (c) 1995-2022 Jean-loup Gailly and Mark Adler\nCopyright (c) Addison-Wesley 2001\nCopyright (c) 1997-2000 Thai Open Source Software Center Ltd\nCopyright (c) 2002-2016 Karl Waclawek <karl@waclawek.net>\nCopyright (c) 2018 Yury Gribov <tetra2005@gmail.com>\nCopyright (c) Calum Grant 2007\nCopyright (c) 1991-2, RSA Data Security, Inc. Created 1991.\nCopyright (c) 2001-2004 Unicode, Inc.\nCopyright (c) 2005-2014 Daniel James.\nCopyright (c) 2000 Clark Cooper <coopercc@users.sourceforge.net>\nCopyright (c) 2017 Tessil\nCopyright (c) 2011, Anton V. Yabchinskiy (arn at bestmx dot ru).",
      "licenses": [
        {
          "license": {
            "name": "Boost Software License 1.0"
          }
        }
      ],
      "cpe": "cpe:2.3:a:pocoproject:poco:1.12.4:*:*:*:*:*:*:*",
      "description": "The POCO C++ Libraries (POCO stands for POrtable COmponents) are open source C++ class libraries that simplify and accelerate the development of network-centric, portable applications in C++. The libraries integrate perfectly with the C++ Standard Library and fill many of the functional gaps left open by it. Their modular and efficient design and implementation makes the POCO C++ Libraries extremely well suited for embedded development, an area where the C++ programming language is becoming increasingly popular, due to its suitability for both low-level (device I/O, interrupt handlers, etc.) and high-level object-oriented development. Of course, the POCO C++ Libraries are also ready for enterprise-level challenges.",
      "supplier": {
        "url": [
          "https://sourceforge.net/projects/poco/"
        ]
      }
    },
    {
      "name": "commonmark-java core",
      "bom-ref": "commonmark-java core",
      "type": "library",
      "version": "0.11.0",
      "copyright": "Copyright (c) 2015-2016, Atlassian Pty Ltd",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:maven/com.atlassian.commonmark/commonmark@0.11.0",
      "description": "Core of commonmark-java",
      "supplier": {
        "url": [
          "https://github.com/atlassian/commonmark-java/commonmark"
        ]
      }
    },
    {
      "name": "commonmark-java core",
      "bom-ref": "commonmark-java core",
      "type": "library",
      "version": "0.21.0",
      "copyright": "Copyright (c) 2015, Atlassian Pty Ltd ",
      "licenses": [
        {
          "license": {
            "name": "BSD 2-Clause"
          }
        }
      ],
      "purl": "pkg:maven/org.commonmark/commonmark@0.21.0",
      "description": "Core of commonmark-java (implementation of CommonMark for parsing markdown and rendering to HTML)",
      "supplier": {
        "url": [
          "https://github.com/commonmark/commonmark-java/commonmark"
        ]
      }
    },
    {
      "name": "ASM",
      "bom-ref": "ASM",
      "type": "library",
      "version": "3.1",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/org.ow2.util.asm/asm@3.1",
      "description": "ASM is a Java bytecode manipulation framework. It can be used to dynamically generate stub classes or other proxy classes, directly in binary form, or to dynamically modify classes at load time, i.e., just before they are loaded into the Java Virtual Machine.\r\r\nASM offers similar functionalities as BCEL or SERP, but is much smaller (33KB instead of 350KB for BCEL and 150KB for SERP) and faster than these tools (the overhead of a load time class transformation is of the order of 60% with ASM, 700% or more with BCEL, and 1100% or more with SERP). Indeed ASM was designed to be used in a dynamic way* and was therefore designed and implemented to be as small and as fast as possible.",
      "supplier": {
        "url": [
          "http://asm.ow2.org/"
        ]
      }
    },
    {
      "name": "GNU C Library",
      "bom-ref": "GNU C Library",
      "type": "library",
      "version": "2022f",
      "copyright": "Copyright (c) 1985, 1987, 1988 The Regents of the University of California.\nCopyright (c) 1989 The Regents of the University of California.",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:rpm/suse/timezone@2022f-74.66.1?arch=ppc64le",
      "description": "glibc maintenance",
      "supplier": {
        "url": [
          "http://www.gnu.org/software/libc/"
        ]
      }
    },
    {
      "name": "GNU C Library",
      "bom-ref": "GNU C Library",
      "type": "library",
      "version": "2023b",
      "copyright": "Copyright (c) 1985, 1987, 1988 The Regents of the University of California.\nCopyright (c) 1989 The Regents of the University of California.",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:rpm/opensuse/timezone-java@2023b-1.1?arch=noarch",
      "description": "glibc maintenance",
      "supplier": {
        "url": [
          "http://www.gnu.org/software/libc/"
        ]
      }
    },
    {
      "name": "Hamcrest",
      "bom-ref": "Hamcrest",
      "type": "library",
      "version": "1.1",
      "copyright": "Copyright (c) 1998 by William King (wrking@eng.sun.com)\nCopyright (c) 2000-2003, jMock.org \nCopyright (c) 2000-2006 hamcrest.org \nCopyright (c) 2002 The IronSmith Project.\nCopyright (c) 2002-2006 Joe Walnes and QDox Project Team ",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/org.hamcrest/hamcrest-all@1.1",
      "description": "Java (and original) version of Hamcrest http://hamcrest.org/",
      "supplier": {
        "url": [
          "http://hamcrest.org/"
        ]
      }
    },
    {
      "name": "Janino",
      "bom-ref": "Janino",
      "type": "library",
      "version": "3.1.0",
      "copyright": "Copyright (c) 2001-2020rno Unkrig. All rights reserved.",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "cpe": "cpe:2.3:a:janino_project:janino:3.1.0:*:*:*:*:*:*:*",
      "description": "Janino is a compiler that reads a Java expression, block, or source file, and generates Java bytecode that is loaded and executed directly. It is not intended to be a development tool, but an embedded compiler for run-time compilation purposes.",
      "supplier": {
        "url": [
          "https://janino-compiler.github.io/janino/"
        ]
      }
    },
    {
      "name": "Janino",
      "bom-ref": "Janino",
      "type": "library",
      "version": "3.1.9",
      "copyright": "Copyright (c) 2001-2022 Arno Unkrig\nCopyright (c) 2015-2016 TIBCO Software Inc",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "cpe": "cpe:2.3:a:janino_project:janino:3.1.9:*:*:*:*:*:*:*",
      "purl": "pkg:maven/org.codehaus.janino/commons-compiler@3.1.9",
      "description": "Janino is a compiler that reads a Java expression, block, or source file, and generates Java bytecode that is loaded and executed directly. It is not intended to be a development tool, but an embedded compiler for run-time compilation purposes.",
      "supplier": {
        "url": [
          "https://janino-compiler.github.io/janino/"
        ]
      }
    },
    {
      "name": "jmustache",
      "bom-ref": "jmustache",
      "type": "library",
      "version": "1.14",
      "copyright": "Copyright (c) 2010, Michael Bayne",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/com.samskivert/jmustache@1.14",
      "description": "A Java implementation of the Mustache templating language.",
      "supplier": {
        "url": [
          "https://github.com/samskivert/jmustache"
        ]
      }
    },
    {
      "name": "jmustache",
      "bom-ref": "jmustache",
      "type": "library",
      "version": "1.15.0.redhat-00001",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/com.samskivert/jmustache@1.15.0.redhat-00001",
      "description": "A Java implementation of the Mustache templating language.",
      "supplier": {
        "url": [
          "https://github.com/samskivert/jmustache"
        ]
      }
    },
    {
      "name": "ThreeTen backport",
      "bom-ref": "ThreeTen backport",
      "type": "library",
      "version": "1.4.0",
      "copyright": "Copyright (c) 2007-present, Stephen Colebourne\nCopyright (c) 2013, 2018, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2015, 2018, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2015 jQuery Foundation and other contributors; Licensed MIT",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/org.threeten/threetenbp@1.4.0",
      "description": "Backport of JSR-310 to JDK 1.7. NOT an implementation of the JSR.",
      "supplier": {
        "url": [
          "https://github.com/ThreeTen/threetenbp"
        ]
      }
    },
    {
      "name": "ThreeTen backport",
      "bom-ref": "ThreeTen backport",
      "type": "library",
      "version": "1.5.1",
      "copyright": "Copyright (c) 2007-present, Stephen Colebourne\nCopyright (c) 2013, 2018, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2015, 2018, Oracle and/or its affiliates. All rights reserved.\nCopyright (c) 2015 jQuery Foundation and other contributors; Licensed MIT",
      "licenses": [
        {
          "license": {
            "name": "BSD 3-Clause"
          }
        }
      ],
      "purl": "pkg:maven/org.threeten/threetenbp@1.5.1",
      "description": "Backport of JSR-310 to JDK 1.7. NOT an implementation of the JSR.",
      "supplier": {
        "url": [
          "https://github.com/ThreeTen/threetenbp"
        ]
      }
    },
    {
      "name": "Jakarta Activation",
      "bom-ref": "Jakarta Activation",
      "type": "library",
      "version": "1.2.0",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Common Development and Distribution License 1.1"
          }
        }
      ],
      "purl": "pkg:maven/com.sun.activation/javax.activation@1.2.0.redhat-00003",
      "supplier": {
        "url": [
          "https://eclipse-ee4j.github.io/jaf/"
        ]
      }
    },
    {
      "name": "Jakarta Mail",
      "bom-ref": "Jakarta Mail",
      "type": "library",
      "version": "1.6.2",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc. \nCopyright (c) 1996-2018 Oracle and/or its affiliates. \nCopyright (c) 2009-2017 Jason Mehrens.",
      "licenses": [
        {
          "license": {
            "name": "Common Development and Distribution License 1.1"
          }
        }
      ],
      "purl": "pkg:maven/javax.mail/javax.mail-api@1.6.2",
      "description": "JavaMail API Reference Implementation from Sun Microsystems",
      "supplier": {
        "url": [
          "https://javaee.github.io/javamail/"
        ]
      }
    },
    {
      "name": "JavaMail API (no providers)",
      "bom-ref": "JavaMail API (no providers)",
      "type": "library",
      "version": "1.6.2",
      "copyright": "Copyright (c) 1989, 1991 Free Software Foundation, Inc. \nCopyright (c) 1997-2018 Oracle and/or its affiliates. ",
      "licenses": [
        {
          "license": {
            "name": "Common Development and Distribution License 1.1"
          }
        }
      ],
      "purl": "pkg:maven/com.sun.mail/mailapi@1.6.2",
      "description": "JavaMail API (no providers)",
      "supplier": {
        "url": [
          "http://kenai.com/projects/javamail/mailapi"
        ]
      }
    },
    {
      "name": "jakarta.xml.bind:jakarta.xml.bind-api",
      "bom-ref": "jakarta.xml.bind:jakarta.xml.bind-api",
      "type": "library",
      "version": "2.3.2",
      "copyright": "Copyright (c) 1997, 2003-2007, 2009, 2013, 2015, 2017-2018 Oracle and/or its affiliates.\nCopyright (c) 2015 jQuery Foundation and other contributors\nCopyright (c) JS Foundation and other contributors \nCopyright (c) 1995-2013 Jean-loup Gailly and Mark Adler \nCopyright (c) 2014-2017 Vitaly Puzrin and Andrey Tupitsin",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Distribution License - v 1.0"
          }
        }
      ],
      "purl": "pkg:maven/jakarta.xml.bind/jakarta.xml.bind-api@2.3.2.redhat-00003",
      "description": "JAXB (JSR 222) API",
      "supplier": {
        "url": [
          "https://github.com/jakartaee/jaxb-api"
        ]
      }
    },
    {
      "name": "JRuby",
      "bom-ref": "JRuby",
      "type": "library",
      "version": "2019c",
      "copyright": "Unknown",
      "licenses": [
        {
          "license": {
            "name": "Eclipse Public License 2.0"
          }
        }
      ],
      "purl": "pkg:maven/org.jruby/joda-timezones@2019c",
      "description": "JRuby is an 100% pure-Java implementation of the Ruby programming language.\r\r\n\r\r\nJRuby is the effort to recreate the Ruby interpreter in Java. JRuby is tightly integrated with Java to allow both to script any Java class and to embed the interpreter into any Java application.",
      "supplier": {
        "url": [
          "http://www.jruby.org"
        ]
      }
    },
    {
      "name": "Checker Qual",
      "bom-ref": "Checker Qual",
      "type": "library",
      "version": "3.8.0",
      "copyright": "Copyright (c) 2004-present by the Checker Framework developers",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0 w/Classpath exception"
          }
        }
      ],
      "purl": "pkg:maven/org.checkerframework/checker-qual@3.8.0",
      "description": "Checker Qual is the set of annotations (qualifiers) and supporting classes\r\n        used by the Checker Framework to type check Java source code.  Please\r\n        see artifact:\r\n        org.checkerframework:checker",
      "supplier": {
        "url": [
          "https://checkerframework.org"
        ]
      }
    },
    {
      "name": "Checker Qual",
      "bom-ref": "Checker Qual",
      "type": "library",
      "version": "3.12.0",
      "copyright": "Copyright (c) 2004-present by the Checker Framework developers",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:maven/org.checkerframework/checker-qual@3.12.0",
      "description": "Checker Qual is the set of annotations (qualifiers) and supporting classes\r\n        used by the Checker Framework to type check Java source code.  Please\r\n        see artifact:\r\n        org.checkerframework:checker",
      "supplier": {
        "url": [
          "https://checkerframework.org"
        ]
      }
    },
    {
      "name": "JOpt Simple",
      "bom-ref": "JOpt Simple",
      "type": "library",
      "version": "5.0.4",
      "copyright": "Copyright (c) 2004-2015 Paul R. Holser, Jr.",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:maven/net.sf.jopt-simple/jopt-simple@5.0.4",
      "description": "A simple, test-driven command line parser for Java programs, supporting POSIX getopt() and GNU getopt_long().",
      "supplier": {
        "url": [
          "http://pholser.github.io/jopt-simple/"
        ]
      }
    },
    {
      "name": "JSON for Modern Cpp",
      "bom-ref": "JSON for Modern Cpp",
      "type": "library",
      "version": "v3.9.1",
      "copyright": "Copyright (c) 2015 Max Woolf \nCopyright (c) 2016 Nicolas Seriot \nCopyright (c) 2013-2020 Niels Lohmann <http://nlohmann.me>\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de> \nCopyright (c) 2007 Free Software Foundation, Inc. <https://fsf.org/>\nCopyright (c) 2009, 2015, 2018 Google Inc.\nCopyright (c) 2012, Erik Edlund <erik.edlund@32767.se>\nCopyright (c) 2016-2019 Viktor Kirilov\nCopyright (c) 2018 Vitaliy Manushkin <agri@akamo.info>\nCopyright (c) 2016 Ismael Jimenez Martinez.\nCopyright (c) 2017 Roman Lebedev.\nCopyright (c) Louis Dionne 2015 ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "JSON for Modern C++",
      "supplier": {
        "url": [
          "https://json.nlohmann.me"
        ]
      }
    },
    {
      "name": "SLF4J API Module",
      "bom-ref": "SLF4J API Module",
      "type": "library",
      "version": "1.7.36",
      "copyright": "Copyright (c) 2004-2011 QOS.ch ",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "description": "The slf4j API",
      "supplier": {
        "url": [
          "http://www.slf4j.org"
        ]
      }
    },
    {
      "name": "tomlplusplus",
      "bom-ref": "tomlplusplus",
      "type": "library",
      "version": "v3.4.0",
      "copyright": "Copyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>\nCopyright (c) 2009 Florian Loitsch.\nCopyright (c) 2013-2022 Niels Lohmann <http://nlohmann.me>.\nCopyright (c) 2019-2020 Mark Gillard <mark.gillard@outlook.com.au>\nCopyright (c) 2022 Two Blue Cubes Ltd. All rights reserved.\nCopyright (c) 2017 Two Blue Cubes Ltd. All rights reserved.\nCopyright (c) 2008-2009 Bjoern Hoehrmann <bjoern@hoehrmann.de>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ],
      "purl": "pkg:deb/ubuntu/tomlplusplus@3.4.0%2Bds-0.1",
      "description": "Header-only TOML parser and serializer for modern C++.",
      "supplier": {
        "url": [
          "https://marzer.github.io/tomlplusplus/"
        ]
      }
    },
    {
      "name": "Mozilla Rhino",
      "bom-ref": "Mozilla Rhino",
      "type": "library",
      "version": "1.7.7.2",
      "copyright": "Copyright (c) 1995-2013 Jean-loup Gailly and Mark Adler\nCopyright (c) 2014-2017 Vitaly Puzrin and Andrey Tupitsin\nCopyright (c) 2013, 2015, 2018, Oracle and/or its affiliates. \nCopyright (c) JS Foundation and other contributors \nCopyright (c) jQuery Foundation and other contributors\nCopyright (c) 1997-1998 Sun Microsystems, Inc\nCopyright (c) 1999-2015, Mozilla\nCopyright (c) 2001, Takashi Okamoto <tora@debian.org>\nCopyright (c) 2006-2015, the V8 project authors \nCopyright (c) 1996-97 Symantec Corporation\nCopyright (c) 1997, 1998 Netscape Communications Corporation\nCopyright (c) 2004 Baron Schwartz <baron at sequent dot org> \nCopyright (c) 2007 Apple Inc.\nCopyright (c) Paul Johnston 1999 - 2002. \nCopyright (c) Rich Moore.\nCopyright (c) 1991, 2000, 2001 by Lucent Technologies.\nCopyright (c) 2003-2005 Tom Wu \nCopyright (c) 2004 by Arthur Langereis (arthur_ext at domain xfinitegames, tld com)\nCopyright (c) 2004-2007, The Dojo Foundation \nCopyright (c) 2007 John Resig (jquery.com) \nCopyright (c) 1996 John Maloney and Mario Wolczko. \nCopyright (c) 1997, 1998 Sun Microsystems, Inc.",
      "licenses": [
        {
          "license": {
            "name": "Mozilla Public License 2.0"
          }
        }
      ],
      "purl": "pkg:github/mozilla/rhino@Rhino1_7_7_2_Release",
      "description": "Rhino is an open-source implementation of JavaScript written entirely in Java. It is typically embedded into Java applications to provide scripting to end users.",
      "supplier": {
        "url": [
          "http://www.mozilla.org/rhino/"
        ]
      }
    },
    {
      "name": "SQLite",
      "bom-ref": "SQLite",
      "type": "library",
      "version": "2.8.6",
      "licenses": [
        {
          "license": {
            "name": "Public Domain"
          }
        }
      ],
      "description": "SQLite is a C-language library that implements a small, fast, self-contained, high-reliability, full-featured, SQL database engine. SQLite is the most used database engine in the world. SQLite is built into all mobile phones and most computers and comes bundled inside countless other applications that people use every day.",
      "supplier": {
        "url": [
          "http://sqlite.org/"
        ]
      }
    },
    {
      "name": "SQLite",
      "bom-ref": "SQLite",
      "type": "library",
      "version": "3.39.0",
      "licenses": [
        {
          "license": {
            "name": "Public Domain"
          }
        }
      ],
      "cpe": "cpe:2.3:a:sqlite:sqlite:3.39.0:*:*:*:*:*:*:*",
      "description": "SQLite is a C-language library that implements a small, fast, self-contained, high-reliability, full-featured, SQL database engine. SQLite is the most used database engine in the world. SQLite is built into all mobile phones and most computers and comes bundled inside countless other applications that people use every day.",
      "supplier": {
        "url": [
          "http://sqlite.org/"
        ]
      }
    },
    {
      "name": "libjpeg-turbo",
      "bom-ref": "libjpeg-turbo",
      "type": "library",
      "version": "2.0.4",
      "copyright": "Copyright (c) 1991-1998, Thomas G. Lane.",
      "licenses": [
        {
          "license": {
            "name": "Zlib License"
          }
        }
      ],
      "cpe": "cpe:2.3:a:libjpeg-turbo:libjpeg-turbo:2.0.4:*:*:*:*:*:*:*",
      "supplier": {
        "url": [
          "http://libjpeg-turbo.virtualgl.org/"
        ]
      }
    },
    {
      "name": "Kiss FFT",
      "bom-ref": "Kiss FFT",
      "type": "library",
      "version": "Unknown",
      "copyright": "Copyright (c) 2003-2010 Mark Borgerding",
      "licenses": [
        {
          "license": {
            "name": "BSD-3-Clause"
          }
        }
      ]
    },
    {
      "name": "half",
      "bom-ref": "half",
      "type": "library",
      "version": "Unknown",
      "copyright": "Copyright (c) 2012-2017 Christian Rau <rauy@users.sourceforge.net>",
      "licenses": [
        {
          "license": {
            "name": "MIT License"
          }
        }
      ]
    },
    {
      "name": "armadillo",
      "bom-ref": "armadillo",
      "type": "library",
      "version": "6.500.5",
      "copyright": "Copyright (c) 2008-2016 National ICT Australia (NICTA) ",
      "licenses": [
        {
          "license": {
            "name": "Mozilla Public License 2.0"
          }
        }
      ],
      "purl": "pkg:deb/debian/armadillo@upstream?arch=6.500.5%2Bdfsg",
      "description": "Armadillo is a high quality C++ linear algebra library, aiming towards a good balance between speed and ease of use \r\n \r\nUseful for algorithm development directly in C++, or quick conversion of research code into production environments; the syntax (API) is deliberately similar to Matlab \r\n \r\nCan be used for machine learning, pattern recognition, signal processing, bioinformatics, statistics, econometrics, etc \r\n \r\nProvides efficient classes for vectors, matrices and cubes, as well as 150+ associated functions; integer, floating point and complex numbers are supported",
      "supplier": {
        "url": [
          "http://arma.sourceforge.net"
        ]
      }
    },
    {
      "name": "Linux Kernel",
      "bom-ref": "Linux Kernel",
      "type": "library",
      "version": "6.8.12",
      "copyright": "Copyright (c) Linus Torvalds.",
      "licenses": [
        {
          "license": {
            "name": "GPL 2.0 Only"
          }
        }
      ],
      "cpe": "cpe:2.3:o:linux:linux_kernel:6.8.12:*:*:*:*:*:*:*",
      "purl": "pkg:deb/debian/linux@6.8.12-1~bpo12%2B1",
      "description": "The Linux kernel is a Unix-like computer operating system kernel. It is used world-wide: the Linux operating system is based on it and deployed on both traditional computer systems such as personal computers and servers, usually in the form of Linux distributions, and on various embedded devices such as routers, wireless access points, PBXes, set-top boxes, FTA receivers, smart TVs, PVRs and NAS appliances. The Android operating system for tablet computers, smartphones and smartwatches is also based atop the Linux kernel.\r\r\n\r\r\n(from Wikipedia)",
      "supplier": {
        "url": [
          "http://git.kernel.org/pub/scm/linux/kernel/git/longterm/linux-2.6.34.y.git"
        ]
      }
    }
  ]
}
