SPDX License List The SPDX License List is an integral part of the SPDX Specification. The SPDX License List itself is a list of commonly found licenses and exceptions used in free and open or collaborative software, data, hardware, or documentation. The SPDX License List includes a standardized short identifier, the full name, the license text, and a canonical permanent URL for each license and e
Software Package Data Exchangeï¼SPDXï¼[2]ã¯ãLinux Foundationã®åä¸ã®ããã¸ã§ã¯ãã§ãã[3]ãSPDXããã¸ã§ã¯ãã¯ãçµç¹ãã½ããã¦ã§ã¢ã©ã¤ã»ã³ã¹ãBills of materialï¼BOMãé¨å表ãã½ããã¦ã§ã¢æ§æè¡¨ã¨ãããï¼ã«é¢ããã¡ã¿ãã¼ã¿ã®ãªã¼ãã³ã¹ã¿ã³ãã¼ããçå®ã[4]ãé¢é£ãããã©ã¼ããããªã©ãåæ»ã«å©ç¨ããããã®SPDX ã®ãªã³ã©ã¤ã³ãã¼ã«ãªã©ãæ´åãã¦ããã ãã®ä»æ§ã»è¦æ ¼[5]ã®ç¾å¨ã®ãã¼ã¸ã§ã³ã¯2.2ã§ã2022å¹´8æã«æ¿èªããã[6]ãã¾ããã®SPDXãã©ã¼ãããã®ä»æ§ã¯ISO/IEC 5962:2021ã¨ã㦠2021å¹´ã«å½éæ¨æºåããã[7]ã SPDXã¯ãã½ããã¦ã§ã¢ãã©ã¤ã»ã³ã¹ãææ§ããªãå¤å¥ã§ããããã«SPDX-Identifierãå®ç¾©ãã¦ãã[8]ãã¾ããã©ã¤ã»ã³ã¹ãã¿ã¤ãå¥ã«åé¡ãããã¨ã¯ãã¦ãã
SPDX license identifiers ã£ã¦ãªãã ã ã¡ãã£ã¨è¨³ããã£ã¦ãgit ã®ãã°ãè¦ã¦ãã以ä¸ã®ãããªã¨ã³ããªããã£ãã1 hrtimers/tick/clockevents: Remove sloppy license references "For licencing details see kernel-base/COPYING" and similar license references have no value over the SPDX identifier. Remove them.
yamoryãå°å ¥ããã¾ã§ã¯ãæ å½è ã宿çã«èå¼±æ§æ å ±ã®ãµã¤ããè¦ã«è¡ããæ å ±ã確èªããå½¢ã§å®æ½ãã¦ãã¾ããã ãã ãããã®ããæ¹ã ã¨æã«2ã3æ¥åã®ã¨ã³ã¸ãã¢ã®å·¥æ°ãããã£ã¦ãã¾ãããæ å½è ã«ãã£ã¦åç §ãããµã¤ããç°ãªãçããæ¹ãã°ãã°ãã§ãããæ å ±ã®ã°ãã¤ããæ¤ç¥ã¹ãã¼ãã®æ ä¿ãå°é£ãªé¢ãããã¾ããã ã¾ããã客æ§ãããèå¼±æ§ã®ãã¥ã¼ã¹ãåºã¦ãããã対å¿ã¯å¤§ä¸å¤«ããã¨ãã£ããåãåããããã£ãéããã®é½åº¦æ å½è ã調æ»ãã¦ããããã¯ãå·¥æ°ãããã£ã¦ãã¾ããã 彿ãã客æ§ãããªã¼ãã³ã½ã¼ã¹ã®ã©ã¤ãã©ãªã®èå¼±æ§ã«ã¤ãã¦ãåãåãããåãããã¨ãå¤ãããã®å¯¾å¿ã«è¿½ããã¦ããæã«ã¡ããã©å±ç¤ºä¼ã§ yamoryãç¥ãã¾ããã æ©é試ãã¦ã¿ãã¨ãããã客æ§ãããåãåãããé ãã¦ããã©ã¤ãã©ãªã®èå¼±æ§ãã¾ãã«æ¤ç¥ãããã®ã§ã詳ãã説æãèãããã¨yamoryã«é£çµ¡ããã¾ããã ã¨ã³ã¸ãã¢ãä¸è¨ã®
éä¿¡ä¸ã§æ å ±ãããåãããã¨ãããã®æ å ±ã®å®å ¨æ§ã確ä¿ããããã«å ¬é鵿巿¹å¼ãå©ç¨ããã¦ãããå ¬é鵿巿¹å¼ã®ä¸ã§ãç¹ã«è¨¼æå¯è½å®å ¨æ§ãæã¤æå·æ¹å¼ãåºãå©ç¨ããã¦ãããããããã®æå·æ¹å¼ã®æ§æã¨å®å ¨æ§è¨¼æã¯è¤éãªãã®ã¨ãªã£ã¦ãããæå·çè«ããã¾ãå¦ãã§ããªã人ã«ã¯çè§£ãã¥ãããä¸è¬ã®äººã«ã¨ã£ã¦æå·æ¹å¼ãæ£ç¢ºãã¤å®å ¨ã«å®è£ ãããã¨ã¯é£ããã è±å²¡ã(ICS'08)ãå±±ç°ã(Provsec'10)ã¯ãã®ãããªæå·çè«ãããããå¦ã¶äººã¸åãã¦æå·æ¹å¼ã®æ§æãå®å ¨æ§è¨¼æãæ¯è¼çåç´ãªæå·æ¹å¼ãææ¡ãããããããªãããå±±ç°ããææ¡ããæå·æ¹å¼YHKã®å®å ¨æ§è¨¼æã«ããã¦è¤éãªæ§è³ªããã£ã颿°ãå©ç¨ãã¦ãããä¸é¨è¤éãªãã®ã¨ãªã£ã¦ãããæ¬ç ç©¶ã§ã¯Cashã(EUROCRYPT'08)ã«ãã£ã¦ææ¡ãããStrong Twin DDHä»®å®ãæ¡å¼µããæ°ããªä»®å®ãç¨ããå±±ç°ããææ¡ããIND-CCAå®å ¨ãªæ
èå¼±æ§ã管çããããã«ã¯SBOMãæå¹ SQuBOKãBSIã®è¨ç«èæ¯ãç®çãèªã£ãå¾ãæ¾å²¡æ°ã¯ãä½ç³»çãªç¥èãä»çµã¿ãç¨ãã¦ã½ããã¦ã§ã¢ã®å質ã管çãã¦ãããã¨ã¯é常ã«éè¦ãã¨è¿°ã¹ãããã®ããã§ãèå¼±æ§ã管çããããã«ã¯SBOM ï¼Software bill of materialsï¼ã½ããã¦ã§ã¢é¨å表ï¼ãç¨ãããã¨ãæå¹ãªã®ã§ã¯ãªãããã¨ããã¢ã¤ãã¢ã示ããã SBOMã¯ã³ã¼ããã¼ã¹ã«åå¨ãããã¹ã¦ã®ãªã¼ãã³ã½ã¼ã¹ããã³ãµã¼ããã¼ãã£ã»ã³ã³ãã¼ãã³ãã®ä¸è¦§ã®ãã¨ã ãSBOMã«ã¯åã³ã³ãã¼ãã³ãã®ã©ã¤ã»ã³ã¹ã®ç¨®å¥ããã³ã¼ããã¼ã¹ã§ä½¿ç¨ãããã³ã³ãã¼ãã³ãã®ãã¼ã¸ã§ã³ããããã®ãããã®æä¾ç¶æ³ãè¨è¿°ãããã SBOMãä¿å®ãããã¨ã§ãã½ããã¦ã§ã¢ãæ§æããã½ã¼ã¹ã³ã¼ããé«å質ãã¤å®ããããè¦æ ¼ãè¦å¶ã«æºæ ãã¦ãããå®å ¨ã§ãããã¨ãä¿è¨¼ã§ããããã®ããã«ãã½ããã¦ã§ã¢ãã©ã®ãããªè¦ç´ ããæ§æ
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}