)]}'
{
  "commit": "f4043f8c09f0663d8e97d368f7f39f36902dcf09",
  "tree": "5390e8ff25a9b008c1f1e39e49234adc0909449f",
  "parents": [
    "7695b849d42f9875e94a5f8f2c695889544c1a79",
    "da545d0856a7d7925586accaa9dafe4068ba86ad"
  ],
  "author": {
    "name": "Jacob Pratt",
    "email": "jacob@jhpratt.dev",
    "time": "Sun Apr 26 21:56:41 2026 -0400"
  },
  "committer": {
    "name": "GitHub",
    "email": "noreply@github.com",
    "time": "Sun Apr 26 21:56:41 2026 -0400"
  },
  "message": "Rollup merge of #155708 - Manishearth:borrow-fix, r\u003dMark-Simulacrum\n\nFix heap overflow in slice::join caused by misbehaving Borrow\n\nThis code allocates a buffer using lengths calculated by calling `.borrow()` on some slices, and then copies them over after again calling `.borrow()`. There is no safety-reliable guarantee that these will return the same slices.\n\nWhile this code calls `.borrow()` three times, only one of them is problematic: the others already use checked indexing.\n\nI made the test a normal library test, but let me know if it should go elsewhere.\n\nBug discovered by Rust Foundation Security using AI. I\u0027m just helping with the patch as a member of wg-security-response. We do not believe this bug needs embargo, it is a soundness fix for hard-to-trigger unsoundness.\n",
  "tree_diff": []
}
