You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[PM-27115] Force icon uri checksum verification on user crypto v2 (#519)
## 🎟️ Tracking
https://bitwarden.atlassian.net/browse/PM-27115https://bitwarden.atlassian.net/browse/VULN-185https://bitwarden.atlassian.net/browse/PM-4185
## 📔 Objective
Forces the icon URI check for crypto v2 users. This adds some plumbing
through the key store, which now also includes other non-key
cryptographic state. The account security version is expected to be used
in many other places that have access to the key store and we do not
want to pass through an additional struct to all places.
Please see the tickets for context about what specifically this change
achieves.
Further, this fixes the icon uri check to be constant time.
## ⏰ Reminders before review
- Contributor guidelines followed
- All formatters and local linters executed and passed
- Written new unit and / or integration tests where applicable
- Protected functional changes with optionality (feature flags)
- Used internationalization (i18n) for all UI strings
- CI builds passed
- Communicated to DevOps any deployment requirements
- Updated any necessary documentation (Confluence, contributing docs) or
informed the documentation
team
## 🦮 Reviewer guidelines
<!-- Suggested interactions but feel free to use (or not) as you desire!
-->
- 👍 (`:+1:`) or similar for great changes
- 📝 (`:memo:`) or ℹ️ (`:information_source:`) for notes or general info
- ❓ (`:question:`) for questions
- 🤔 (`:thinking:`) or 💭 (`:thought_balloon:`) for more open inquiry
that's not quite a confirmed
issue and could potentially benefit from discussion
- 🎨 (`:art:`) for suggestions / improvements
- ❌ (`:x:`) or ⚠️ (`:warning:`) for more significant problems or
concerns needing attention
- 🌱 (`:seedling:`) or ♻️ (`:recycle:`) for future improvements or
indications of technical debt
- ⛏ (`:pick:`) for minor or nitpick changes
0 commit comments