Skip to main content
assistive.skiplink.to.breadcrumbs
assistive.skiplink.to.header.menu
assistive.skiplink.to.action.menu
assistive.skiplink.to.quick.search
Log in
Confluence
Spaces
Hit enter to search
Help
Online Help
Keyboard Shortcuts
Feed Builder
What’s new
Available Gadgets
About Confluence
Log in
SEI CERT Oracle Coding Standard for Java
Pages
Boards
Space shortcuts
Dashboard
Secure Coding Home
Android
C
C++
Java
Perl
Page tree
Browse pages
Configure
Space tools
View Page
A
t
tachments (0)
Page History
Page Information
View in Hierarchy
View Source
Export to PDF
Export to Word
Pages
…
SEI CERT Oracle Coding Standard for Java
2 Rules
Rule 14. Serialization (SER)
SER11-J. Prevent overwriting of externalizable objects
Page Information
Title:
SER11-J. Prevent overwriting of externalizable objects
Author:
Dhruv Mohindra
Mar 03, 2009
Last Changed by:
David Svoboda
Aug 06, 2025
Tiny Link:
(useful for email)
https://wiki.sei.cmu.edu/confluence/x/ejdGBQ
Export As:
Word
·
PDF
Hierarchy
Parent Page
Page:
Rule 14. Serialization (SER)
Labels
Global Labels (7)
draft
ser
android-applicable
android
rule
analyzable
deprecated-applet
Recent Changes
Time
Editor
Aug 06, 2025 17:03
David Svoboda
View Changes
REM cost reform
May 18, 2021 08:48
Michal Rozenau
View Changes
Parasoft Jtest 2021.1
Feb 26, 2021 09:48
Michal Rozenau
View Changes
Parasoft Jtest 2020.2
Feb 12, 2018 22:02
Will Snavely
View Changes
Nov 16, 2017 14:43
Will Snavely
View Page History
Outgoing Links
SEI CERT Oracle Coding Standard for Java (9)
Page:
Rule BB. Glossary
Page:
Rule 14. Serialization (SER)
Home page:
SEI CERT Oracle Coding Standard for Java
Page:
Rule AA. References
Page:
SER12-J. Prevent deserialization of untrusted data
Page:
Parasoft
Page:
LCK00-J. Use private final lock objects to synchronize classes that may interact with untrusted code
Page:
Parasoft_V
Page:
SER10-J. Avoid memory and resource leaks during serialization
Overview
Content Tools
{"serverDuration": 66, "requestCorrelationId": "1121ec126f03e38a"}