/
githubmirror
/
jdk11u-dev
Обзор
Документация
Войти
/
githubmirror
/
jdk11u-dev
Код
Запросы
0
Пакеты
0
Релизы
0
Аналитика
Безопасность
master
src/java.base/share/classes/java/io/package-info.java
49 строк
2 KB
Roger Riggs
8197595: Serialization javadoc should link to security best practices
28 мар 2018, 21:15
28 мар 2018, 21:15
e50e03e
Код
Авторство
О чём код?
/* * Copyright (c) 1998, 2017, Oracle and/or its affiliates. All rights reserved. * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER. * * This code is free software; you can redistribute it and/or modify it * under the terms of the GNU General Public License version 2 only, as * published by the Free Software Foundation. Oracle designates this * particular file as subject to the "Classpath" exception as provided * by Oracle in the LICENSE file that accompanied this code. * * This code is distributed in the hope that it will be useful, but WITHOUT * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License * version 2 for more details (a copy is included in the LICENSE file that * accompanied this code). * * You should have received a copy of the GNU General Public License version * 2 along with this work; if not, write to the Free Software Foundation, * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. * * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA * or visit www.oracle.com if you need additional information or have any * questions. */ /** * Provides for system input and output through data streams, * serialization and the file system. * * Unless otherwise noted, passing a null argument to a constructor or * method in any class or interface in this package will cause a * {@code NullPointerException} to be thrown. * * <h2>Object Serialization</h2> * <p><strong>Warning: Deserialization of untrusted data is inherently dangerous * and should be avoided. Untrusted data should be carefully validated according to the * "Serialization and Deserialization" section of the * {@extLink secure_coding_guidelines_javase Secure Coding Guidelines for Java SE}. * </strong></p> * <ul> * <li><a href="{@docRoot}/../specs/serialization/index.html"> * Java Object Serialization Specification </a> * <li>{@extLink serialization_filter_guide Serial Filtering} best practices</li> * <li>{@extLink serialver_tool_reference The serialver tool}</li> * </ul> * * @since 1.0 */ package java.io;