)]}'
{
  "commit": "5a021e9ffd56c22700133ebc37d607f95be8f7bd",
  "tree": "0d289c7feec4e7b3b19c7c312e8cb31532c5b9c9",
  "parents": [
    "f745bb1c73e2395e6b9961d4d915a8f8e2cd32cd"
  ],
  "author": {
    "name": "Matt Mackall",
    "email": "mpm@selenic.com",
    "time": "Thu Jul 19 11:30:14 2007 -0700"
  },
  "committer": {
    "name": "Linus Torvalds",
    "email": "torvalds@woody.linux-foundation.org",
    "time": "Thu Jul 19 14:21:04 2007 -0700"
  },
  "message": "random: fix bound check ordering (CVE-2007-3105)\n\nIf root raised the default wakeup threshold over the size of the\noutput pool, the pool transfer function could overflow the stack with\nRNG bytes, causing a DoS or potential privilege escalation.\n\n(Bug reported by the PaX Team \u003cpageexec@freemail.hu\u003e)\n\nCc: Theodore Tso \u003ctytso@mit.edu\u003e\nCc: Willy Tarreau \u003cw@1wt.eu\u003e\nSigned-off-by: Matt Mackall \u003cmpm@selenic.com\u003e\nSigned-off-by: Chris Wright \u003cchrisw@sous-sol.org\u003e\nSigned-off-by: Linus Torvalds \u003ctorvalds@linux-foundation.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "7f5271272f91400b17d1ac928047d5d363c35be4",
      "old_mode": 33188,
      "old_path": "drivers/char/random.c",
      "new_id": "397c714cf2ba78b517a363f0bef2eb674309cb13",
      "new_mode": 33188,
      "new_path": "drivers/char/random.c"
    }
  ]
}
