• Skip to main content
  • assistive.skiplink.to.breadcrumbs
  • assistive.skiplink.to.header.menu
  • assistive.skiplink.to.action.menu
  • assistive.skiplink.to.quick.search
Log in
Confluence
  • Spaces
  • Hit enter to search
  • Help
    • Online Help
    • Keyboard Shortcuts
    • Feed Builder
    • What’s new
    • Available Gadgets
    • About Confluence
  • Log in

SEI CERT Oracle Coding Standard for Java
SEI CERT Oracle Coding Standard for Java
  • Pages
  • Boards

Space shortcuts

  • Dashboard
  • Secure Coding Home
  • Android
  • C
  • C++
  • Java
  • Perl
Browse pages
  • See content from all spaces
  • Popular Labels
  • All Labels

Labelled content

search
attachments
weblink
advanced
Overview
Content Tools
Related Labels
  • incomplete
  • cwe-78
  • cwe-459
  • cwe-405
  • num
  • recommendation
  • cwe-494
  • sec
  • jni
  • rule
  • msc
  • cwe-754
  • dos
  • cwe-798
  • cwe-272
  • draft
  • vna
  • not-android-applicable-java
  • cwe-191
  • thi
  • injection
  • resource-exhaustion
  • sensitive
  • cwe-770
  • cwe-330
Every content item in this list is tagged with all the required labels:
  • android
  • ser

To add a label to the list of required labels, choose '+ labelname' from Related Labels.
To remove a label from the required labels, choose '- labelname' from above.

  • Page:
    SER01-J. Do not deviate from the proper signatures of serialization methods
    Sep 07, 2009 • Dhruv Mohindra
    • draft
    • ser
    • android-applicable
    • android
    • rule
  • Page:
    SER08-J. Minimize privileges before deserializing from a privileged context
    Jul 22, 2009 • Dhruv Mohindra
    • capability
    • draft
    • ser
    • android-applicable
    • android
    • rule
    • analyzable
    • cwe-250
  • Page:
    SER11-J. Prevent overwriting of externalizable objects
    Mar 03, 2009 • Dhruv Mohindra
    • draft
    • ser
    • android-applicable
    • android
    • rule
    • analyzable
  • Page:
    SER05-J. Do not serialize instances of inner classes
    Feb 28, 2009 • Dhruv Mohindra
    • ser
    • android-applicable
    • android
    • rule
    • analyzable
  • Page:
    SER02-J. Sign then seal objects before sending them outside a trust boundary
    Jan 16, 2009 • Dhruv Mohindra
    • draft
    • ser
    • cwe-311
    • cwe-494
    • android-applicable
    • android
    • rule
  • Page:
    SER03-J. Do not serialize unencrypted sensitive data
    Jun 30, 2008 • Dhruv Mohindra
    • sensitive
    • ser
    • android-applicable
    • android
    • rule
    • analyzable
  • Powered by Atlassian Confluence 8.5.22
  • Printed by Atlassian Confluence 8.5.22
  • Report a bug
  • Atlassian News
Atlassian

Carnegie Mellon University
Software Engineering Institute
4500 Fifth Avenue
Pittsburgh, PA 15213-2612
412-268-5800

Contact Us
  • Office Locations|
  • Additional Sites Directory|
  • Legal|
  • Privacy Notice|
  • CMU Ethics Hotline|
  • www.sei.cmu.edu

©2023 Carnegie Mellon University

{"serverDuration": 77, "requestCorrelationId": "a577253de8ea5e37"}