Pretty sure github.com/GrapheneOS/os_ is yet another use-after-free bug. The certificate is invalid because it's completely zeroed. Building without the hardened_malloc included appears to bypass the issue. Should be fixed in the next few days which unblocks a lot of other things.
