Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-8210496

Improve filtering for classes with security sensitive fields

    XMLWordPrintable

Details

    • Enhancement
    • Resolution: Fixed
    • P4
    • 12
    • None
    • core-libs
    • None

    Description

      The filters maintained by core reflection are a useful band aid to avoid leaking Field or Method objects to untrusted code. The filtering mechanism can be improved to filter out all fields from highly security sensitive classes such as Class, ClassLoader and some of the java.lang.reflect classes.

      Attachments

        Issue Links

          Activity

            People

              alanb Alan Bateman
              alanb Alan Bateman
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: