)]}'
{
  "commit": "414a0f86e53329a8b27b2d73f2975048c86a9736",
  "tree": "f6920e4a57437a5a373f0db94239858f76fca8c3",
  "parents": [
    "13c67c99d8b2e4efef4fb6f6b67e3abfd6031920"
  ],
  "author": {
    "name": "David Benjamin",
    "email": "davidben@google.com",
    "time": "Fri Oct 29 09:05:33 2021 -0400"
  },
  "committer": {
    "name": "Adam Langley",
    "email": "agl@google.com",
    "time": "Mon Nov 01 18:08:51 2021 +0000"
  },
  "message": "Don\u0027t parse constructed BIT STRINGs in crypto/bytestring\n\nUpdate-Note: PKCS#7 and PKCS#12 parsers will now reject BER constructed\nBIT STRINGs. We were previously misparsing them, as was OpenSSL. Given\nhow long the incorrect parse has been out there, without anyone noticing\n(other parsers handle it correctly), it is unlikely these exist.\n\nChange-Id: I61d317461cc59480dc9f772f88edc7758206d20d\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/50289\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "fd35e97078f407629ea946c1828ae43b23bb6053",
      "old_mode": 33188,
      "old_path": "crypto/bytestring/ber.c",
      "new_id": "e7f67ddfaa42c7c514fb255c680287f46df63844",
      "new_mode": 33188,
      "new_path": "crypto/bytestring/ber.c"
    },
    {
      "type": "modify",
      "old_id": "0877a2e72e5edb509c6339cb3dfb29fa9bc43827",
      "old_mode": 33188,
      "old_path": "crypto/bytestring/bytestring_test.cc",
      "new_id": "985e38cccc161dba1b89b5a440ffeb171eefa256",
      "new_mode": 33188,
      "new_path": "crypto/bytestring/bytestring_test.cc"
    }
  ]
}
