Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Parasoft Jtest 2020.2

...

Rule

Severity

Likelihood

Remediation Cost

Priority

Level

FIO05-J

Medium

Likely

Low

P18

L1

Automated Detection

Sound automated detection of this vulnerability is not feasible. Heuristic approaches may be useful.

ToolVersionCheckerDescription
Parasoft Jtest

Include Page
Parasoft_V
Parasoft_V

BD.SECURITY.BUFEXPDo not expose data wrapped by a buffer to untrusted code

Bibliography

[API 2014]

Class CharBuffer

[Hitchens 2002]

Section 2.3 "Duplicating Buffers"

...