)]}'
{
  "commit": "20b6a4e2a18e6a2c961ae0cd9945b69ad42dc64e",
  "tree": "b61582514826d5c24c368155964579b35e7ec3c6",
  "parents": [
    "d154c7ccbc133c5e69a3a5281409ee50754eebe0"
  ],
  "author": {
    "name": "David Benjamin",
    "email": "davidben@google.com",
    "time": "Fri Jul 20 19:29:14 2018 -0400"
  },
  "committer": {
    "name": "CQ bot account: commit-bot@chromium.org",
    "email": "commit-bot@chromium.org",
    "time": "Fri Jul 20 23:45:06 2018 +0000"
  },
  "message": "Clear r-\u003eneg in bn_mod_{add,sub}_consttime.\n\nOtherwise, if the output BIGNUM was previously negative, we\u0027d incorrectly give\na negative result. Thanks to Guide Vranken for reporting this issue!\n\nFortunately, this does not appear to come up in any existing caller. This isn\u0027t\nall that surprising as negative numbers never really come up in cryptography.\nWere it not for OpenSSL historically designing a calculator API, we\u0027d just\ndelete the bit altogether. :-(\n\nBug: chromium:865924\nChange-Id: I28fdc986dfaba3e38435b14ebf07453d537cc60a\nReviewed-on: https://boringssl-review.googlesource.com/29944\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCQ-Verified: CQ bot account: commit-bot@chromium.org \u003ccommit-bot@chromium.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "a25d4871e686f049cac353ad08a1157940618ede",
      "old_mode": 33188,
      "old_path": "crypto/fipsmodule/bn/bn_test.cc",
      "new_id": "27fd5c7891af9f0a139d1c81eaf0595d23b76704",
      "new_mode": 33188,
      "new_path": "crypto/fipsmodule/bn/bn_test.cc"
    },
    {
      "type": "modify",
      "old_id": "a350fbfa3158c6717ced5102b96aff2be28dc2a5",
      "old_mode": 33188,
      "old_path": "crypto/fipsmodule/bn/div.c",
      "new_id": "57485bd19db4f058e438c26667d36a2d6a984226",
      "new_mode": 33188,
      "new_path": "crypto/fipsmodule/bn/div.c"
    }
  ]
}
