)]}'
{
  "commit": "4b0d0e4c5ef19055b3ff17ed3d760f9b10d76641",
  "tree": "7cff3c54a064f3d98d5bf4589f4d404fc9571525",
  "parents": [
    "ea213d1f0b655d60793b67337bac2019c37300e7"
  ],
  "author": {
    "name": "David Benjamin",
    "email": "davidben@google.com",
    "time": "Fri Oct 28 17:17:14 2016 -0400"
  },
  "committer": {
    "name": "CQ bot account: commit-bot@chromium.org",
    "email": "commit-bot@chromium.org",
    "time": "Fri Oct 28 21:25:35 2016 +0000"
  },
  "message": "Validate input iv/mac sizes in SSL_AEAD_CTX_new.\n\nThis should never happen, but the SSL_AEAD_CTX_new layer should enforce\nkey sizes as it\u0027s not locally obvious at the call site the caller didn\u0027t\nget confused. There\u0027s still a mess of asserts below, but those should be\nfixed by cutting the SSL_CIPHER/SSL_AEAD_CTX boundary differently.\n\n(enc_key_len is validated by virtue of being passed into EVP_AEAD.)\n\nBUG\u003dchromium:659593\n\nChange-Id: I8c91609bcef14ca1509c87aab981bbad6556975f\nReviewed-on: https://boringssl-review.googlesource.com/11940\nReviewed-by: Steven Valdez \u003csvaldez@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nCQ-Verified: CQ bot account: commit-bot@chromium.org \u003ccommit-bot@chromium.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "0f6f64fae2f1a79947d110c7293401fb272cfbbb",
      "old_mode": 33188,
      "old_path": "ssl/ssl_aead_ctx.c",
      "new_id": "b05df0b1460730c393e7c023077451130651db82",
      "new_mode": 33188,
      "new_path": "ssl/ssl_aead_ctx.c"
    },
    {
      "type": "modify",
      "old_id": "1fcde5144e5bdd9f05bfdd78e80e115a70813c25",
      "old_mode": 33188,
      "old_path": "ssl/tls13_enc.c",
      "new_id": "95132cc98dcc98d097377e212508ae96ce5f5a0f",
      "new_mode": 33188,
      "new_path": "ssl/tls13_enc.c"
    }
  ]
}
