Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Rules

Content by Label
showLabelsfalse
max99
spacescom.atlassian.confluence.content.render.xhtml.model.resource.identifiers.SpaceResourceIdentifier@3bbaf8c
showSpacefalse
sorttitle
cqllabel = "rule" and label = "env" and label != "void" and space = currentSpace()
labels+env,-void, +rule

Risk Assessment Summary

Rule

Severity

Likelihood

Detectable

Repairable

Guidelines

ENV00-J. Do not sign code that performs only unprivileged operations

ENV01-J. Place all privileged code in a single package and seal the package

ENV02-J. Create a secure sandbox using a Security Manager

ENV03-J. Never grant AllPermission to untrusted code

ENV04-J. Do not grant ReflectPermission with target suppressAccessChecks

ENV05-J. Do not grant RuntimePermission with target createClassLoader

ENV06-J. Provide a trusted environment and sanitize all inputs

ENV07-J. Do not deploy an application that can be accessed by the JVM Tool Interface

ENV08-J. Do not deploy an application that can be accessed using the Java Platform Debugger Architecture

ENV09-J. Limit remote uses of JVM Monitoring and Managing

ENV10-J. Do not disable bytecode verification

Risk Assessment Summary

Guideline

Severity

Likelihood

Remediation Cost

Priority

Level

ENV00-JHigh high Probable probable No medium No

P12 P6

L1 L2

ENV01-JHighProbable high probable No medium No

P12 P6

L1 L2

ENV02-JLow high Likely probable Yes low No

P18 P6

L1 L2

ENV03-JHighLikely high likely No low No

P27 P9

L1 L2

ENV04-JHigh high Likely probable No low No

P18 P9

L1 L2

ENV05-JHighProbable high probable No low No

P18 P6

L1 L2

ENV06-J high High probable Probable medium No P12 No

L1 P6

ENV07-J

low

unlikely

medium

P2

L3

ENV08-J

high

probable

medium

P12

L1

ENV09-J

high

probable

low

P18

L1

ENV10-J

high

likely

low

P27

L1

L2


...

Image Added Image Added 00. Introduction      The CERT Oracle Secure Coding Standard for Java      Image Modified