)]}'
{
  "commit": "2d07d30c449adf9280662d8634c8d3a28abfabef",
  "tree": "e9c358c9b10b5499f6eabbfae0eb123b4bb895ad",
  "parents": [
    "cd8470f7fa011420e2ea8d05661514ec8d0bbe7d"
  ],
  "author": {
    "name": "David Benjamin",
    "email": "davidben@google.com",
    "time": "Thu Nov 02 11:02:46 2017 -0400"
  },
  "committer": {
    "name": "CQ bot account: commit-bot@chromium.org",
    "email": "commit-bot@chromium.org",
    "time": "Thu Nov 02 17:07:57 2017 +0000"
  },
  "message": "bn/asm/x86_64-mont5.pl: fix carry bug in bn_sqrx8x_internal.\n\nCredit to OSS-Fuzz for finding this.\n\nCVE-2017-3736\n\n(Imported from upstream\u0027s 668a709a8d7ea374ee72ad2d43ac72ec60a80eee and\n420b88cec8c6f7c67fad07bf508dcccab094f134.)\n\nThis bug does not affect BoringSSL as we do not enable the ADX code.\nNote the test vector had to be tweaked to take things in and out of\nMontgomery form. (There may be something to be said for test vectors for\njust BN_mod_mul_montgomery, though we\u0027d need separate 64-bit and 32-bit\nones because R can be different.)\n\nChange-Id: I832070731ac1c5f893f9c1746892fc4a32f023f5\nReviewed-on: https://boringssl-review.googlesource.com/22484\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCQ-Verified: CQ bot account: commit-bot@chromium.org \u003ccommit-bot@chromium.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "dfb8b37b0d510868194b06b22fdfb43f7ebb1847",
      "old_mode": 33261,
      "old_path": "crypto/fipsmodule/bn/asm/x86_64-mont5.pl",
      "new_id": "69b8e0111f5c40351d9b565b0f6f92b5fd2e08f4",
      "new_mode": 33261,
      "new_path": "crypto/fipsmodule/bn/asm/x86_64-mont5.pl"
    },
    {
      "type": "modify",
      "old_id": "c53eb238261d302e88de2ad243adfeaff3221ae8",
      "old_mode": 33188,
      "old_path": "crypto/fipsmodule/bn/bn_tests.txt",
      "new_id": "f809e7e32a5788bdd7a15bd2c3bcba39d62b47ca",
      "new_mode": 33188,
      "new_path": "crypto/fipsmodule/bn/bn_tests.txt"
    }
  ]
}
