Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-8210496

Improve filtering for classes with security sensitive fields

    XMLWordPrintable

    Details

    • Type: Enhancement
    • Status: Resolved
    • Priority: P4
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 12
    • Component/s: core-libs
    • Labels:
      None

      Description

      The filters maintained by core reflection are a useful band aid to avoid leaking Field or Method objects to untrusted code. The filtering mechanism can be improved to filter out all fields from highly security sensitive classes such as Class, ClassLoader and some of the java.lang.reflect classes.

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              alanb Alan Bateman
              Reporter:
              alanb Alan Bateman
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: