summary refs log tree commit diff
path: root/packages/overlays/matrix-synapse/patches/0028-Fix-lint-which-broke-in-18374-18385.patch
diff options
context:
space:
mode:
Diffstat (limited to '')
-rw-r--r--packages/overlays/matrix-synapse/patches/0028-Fix-lint-which-broke-in-18374-18385.patch37
1 files changed, 0 insertions, 37 deletions
diff --git a/packages/overlays/matrix-synapse/patches/0028-Fix-lint-which-broke-in-18374-18385.patch b/packages/overlays/matrix-synapse/patches/0028-Fix-lint-which-broke-in-18374-18385.patch
deleted file mode 100644

index 63ea40e..0000000 --- a/packages/overlays/matrix-synapse/patches/0028-Fix-lint-which-broke-in-18374-18385.patch +++ /dev/null
@@ -1,37 +0,0 @@ -From d18edf67d6f444c8dfa6a46e8769bbfa8d22f57b Mon Sep 17 00:00:00 2001 -From: Quentin Gliech <quenting@element.io> -Date: Fri, 2 May 2025 14:07:23 +0200 -Subject: [PATCH 28/74] Fix lint which broke in #18374 (#18385) - -https://github.com/element-hq/synapse/pull/18374 did not pass linting -but was merged ---- - changelog.d/18385.misc | 1 + - synapse/handlers/oidc.py | 2 +- - 2 files changed, 2 insertions(+), 1 deletion(-) - create mode 100644 changelog.d/18385.misc - -diff --git a/changelog.d/18385.misc b/changelog.d/18385.misc -new file mode 100644 -index 0000000000..a8efca68d0 ---- /dev/null -+++ b/changelog.d/18385.misc -@@ -0,0 +1 @@ -+Don't validate the `at_hash` (access token hash) field in OIDC ID Tokens if we don't end up actually using the OIDC Access Token. -\ No newline at end of file -diff --git a/synapse/handlers/oidc.py b/synapse/handlers/oidc.py -index fb759172b3..acf2d4bc8b 100644 ---- a/synapse/handlers/oidc.py -+++ b/synapse/handlers/oidc.py -@@ -599,7 +599,7 @@ class OidcProvider: - # from the userinfo endpoint. Therefore we only have a single criteria - # to check right now but this may change in the future and this function - # should be updated if more usages are introduced. -- # -+ # - # For example, if we start to use the access_token given to us by the - # IdP for more things, such as accessing Resource Server APIs. - return self._uses_userinfo --- -2.49.0 -