{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":96205553,"defaultBranch":"master","name":"pkcs7","ownerLogin":"digitorus","currentUserCanPush":false,"isFork":true,"isEmpty":false,"createdAt":"2017-07-04T10:20:24.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/19838923?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1656943260.357642","currentOid":""},"activityList":{"items":[{"before":"e76b763bdc49973db6adb343c187da454c66bb75","after":"3a137a8743524b3683ca4e11608d0dde37caee99","ref":"refs/heads/master","pushedAt":"2023-08-18T18:46:09.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"vanbroup","name":"Paul van Brouwershaven","path":"/vanbroup","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/722070?s=80&v=4"},"commit":{"message":"ber.go: Protocol Validation and Defense\n\nThis commit attempts to address possible `panic` conditions due to access outside of the bounds of the slice. There are specifically three changes:\n * A couple log messages are commented out due to them attempting to do an out of bounds view into the slice.\n * Existing protocol validation was fixed. There was an attempt to guard against these conditions, however in many cases there was an off by one error, or other conditions had not been considered.\n * A PR from the parent fork which attempts to bring in a protocol fix for lengths between `0x80` and `0xFF` was also included as part of this: https://github.com/mozilla-services/pkcs7/pull/68\n\nThe logic for slice access has been reviewed carefully in an attempt to make sure we are defensive, but still allowing the nuance of the PKCS7 structure. In addition extensive fuzzing has been conducted on these changes.","shortMessageHtmlLink":"ber.go: Protocol Validation and Defense"}},{"before":"51331ccfc40f27dab73cbc42e99f765f618fca70","after":"e76b763bdc49973db6adb343c187da454c66bb75","ref":"refs/heads/master","pushedAt":"2023-07-13T08:48:58.000Z","pushType":"pr_merge","commitsCount":2,"pusher":{"login":"vanbroup","name":"Paul van Brouwershaven","path":"/vanbroup","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/722070?s=80&v=4"},"commit":{"message":"Export GetDigestOIDForSignatureAlgorithm (#5)\n\nThis exports the GetDigestOIDForSignatureAlgorithm function because I would like to use it to get the digest algorithm OID that should be used when constructing the PKCS7 structure in a timestamp response.\r\n\r\nSigned-off-by: Meredith Lancaster ","shortMessageHtmlLink":"Export GetDigestOIDForSignatureAlgorithm (#5)"}}],"hasNextPage":false,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"startCursor":"Y3Vyc29yOnYyOpK7MjAyMy0wOC0xOFQxODo0NjowOS4wMDAwMDBazwAAAANtytQR","endCursor":"Y3Vyc29yOnYyOpK7MjAyMy0wNy0xM1QwODo0ODo1OC4wMDAwMDBazwAAAANUpwiM"}},"title":"Activity ยท digitorus/pkcs7"}