)]}'
{
  "commit": "40f49428d164b7e7145ce6e691956a023ea5cf99",
  "tree": "15db9a7216c0cd2fbc4c653933aa2cd69a9c08be",
  "parents": [
    "9c12f01de7f6646d5ad62a848e3a520b9677dcd0"
  ],
  "author": {
    "name": "David Benjamin",
    "email": "davidben@google.com",
    "time": "Fri Oct 23 11:08:41 2020 -0400"
  },
  "committer": {
    "name": "CQ bot account: commit-bot@chromium.org",
    "email": "commit-bot@chromium.org",
    "time": "Fri Oct 23 16:28:26 2020 +0000"
  },
  "message": "Reland \"Check AlgorithmIdentifier parameters for RSA and ECDSA signatures.\"\"\n\nThis is a looser reland of\nhttps://boringssl-review.googlesource.com/c/boringssl/+/41804, which was\nreverted in\nhttps://boringssl-review.googlesource.com/c/boringssl/+/42804.\n\nEnforcing that the ECDSA parameters were omitted rather than NULL hit\nsome compatibility issues, so instead allow either forms for now. To\nalign with the Chromium verifier, we\u0027ll probably want to later be\nstricter with a quirks flag to allow the invalid form, and then add a\nsimilar flag to Chromium. For now, at least try to reject the completely\ninvalid parameter values.\n\nUpdate-Note: Some invalid certificates will now be rejected at\nverification time. Parsing of certificates is unchanged.\n\nBug: b/167375496,342\nChange-Id: I1cba44fd164660e82a7a27e26368609e2bf59955\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/43664\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "8f53fff6dbd6a9010dacbd280539cb3eda6e6ae3",
      "old_mode": 33188,
      "old_path": "crypto/x509/algorithm.c",
      "new_id": "c021dc44394adc15cfece862956f3fa86792c341",
      "new_mode": 33188,
      "new_path": "crypto/x509/algorithm.c"
    },
    {
      "type": "modify",
      "old_id": "458f7469d011933db10a4626fe2f2ff1b2cc2abf",
      "old_mode": 33188,
      "old_path": "crypto/x509/x509_test.cc",
      "new_id": "77c87fc6073c07ce6313b9734e76cd10affc86e2",
      "new_mode": 33188,
      "new_path": "crypto/x509/x509_test.cc"
    }
  ]
}
