-
Bug
-
Resolution: Fixed
-
P2
-
7
-
b126
-
x86
-
linux
-
Not verified
Findbugs report on jdk7 b112 shows Malicious code vulnerability Warnings in com.sun.java.util.jar.pack.*
Full report is here:
http://sqeweb.sfbay.sun.com/jsn/users/bsitu/StaticAnalysis/results/findbugs1.3.9/jdk7-b112-jre.html#Warnings_MALICIOUS_CODE
Detail:
EI com.sun.java.util.jar.pack.Attribute$Layout.getCallables() may expose internal representation by returning Attribute$Layout.elems
Bug type EI_EXPOSE_REP (click for details)
In class com.sun.java.util.jar.pack.Attribute$Layout
In method com.sun.java.util.jar.pack.Attribute$Layout.getCallables()
Field com.sun.java.util.jar.pack.Attribute$Layout.elems
At Attribute.java:[line 609]
EI com.sun.java.util.jar.pack.Attribute$Layout.getEntryPoint() may expose internal representation by returning Attribute$Layout.elems
Bug type EI_EXPOSE_REP (click for details)
In class com.sun.java.util.jar.pack.Attribute$Layout
In method com.sun.java.util.jar.pack.Attribute$Layout.getEntryPoint()
Field com.sun.java.util.jar.pack.Attribute$Layout.elems
At Attribute.java:[line 617]
Full report is here:
http://sqeweb.sfbay.sun.com/jsn/users/bsitu/StaticAnalysis/results/findbugs1.3.9/jdk7-b112-jre.html#Warnings_MALICIOUS_CODE
Detail:
EI com.sun.java.util.jar.pack.Attribute$Layout.getCallables() may expose internal representation by returning Attribute$Layout.elems
Bug type EI_EXPOSE_REP (click for details)
In class com.sun.java.util.jar.pack.Attribute$Layout
In method com.sun.java.util.jar.pack.Attribute$Layout.getCallables()
Field com.sun.java.util.jar.pack.Attribute$Layout.elems
At Attribute.java:[line 609]
EI com.sun.java.util.jar.pack.Attribute$Layout.getEntryPoint() may expose internal representation by returning Attribute$Layout.elems
Bug type EI_EXPOSE_REP (click for details)
In class com.sun.java.util.jar.pack.Attribute$Layout
In method com.sun.java.util.jar.pack.Attribute$Layout.getEntryPoint()
Field com.sun.java.util.jar.pack.Attribute$Layout.elems
At Attribute.java:[line 617]
- relates to
-
JDK-7006704 (pack200) add missing file for 6990106
- Closed