[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Small ZipFile patch
From: |
Brian Jones |
Subject: |
Re: Small ZipFile patch |
Date: |
12 Aug 2003 09:20:32 -0400 |
User-agent: |
Gnus/5.09 (Gnus v5.9.0) Emacs/21.2 |
Tom Tromey <address@hidden> writes:
> >>>>> "Jeroen" == Jeroen Frijters <address@hidden> writes:
>
> Jeroen> Sun's ClassLoader has a hack that prevents this from being
> exploitable:
> Jeroen> http://www.securingjava.com/chapter-five/chapter-five-8.html
>
> Sounds like we need this in ClassLoader and in any other class that
> performs security checks in its constructor.
This is still a TODO item, yes?
Brian
--
Brian Jones <address@hidden>
- Re: Small ZipFile patch,
Brian Jones <=