LLNL/Surfactant

CycloneDX Error

REestwick opened this issue · 1 comments

Describe the bug

Upon creation of a CycloneDX JSON SBOM, using Surfactant, it failed validation using the CycloneDX Web Tool.

Upon investigation, it was found that the SBOM had formatting errors regarding to copyright, and a formatting discrepancy in the description and version sections.

To Reproduce

Create an SBOM in CycloneDX format using the Surfactant CLI from Helics.

Expected behavior

SBOM components with the copyright and description formats as follows:

    {
      "copyright": {},
      "description": "",
    }

Screenshots
If applicable, add screenshots to help explain your problem.

image

System Information

  • OS: Ubuntu 20.04.

Example
Helics-3.5.1-Linux-x86_64.cdx.json

Thanks for the bug report!