Vulnerability Development mailing list archives

Re: Java and buffer overflows


From: KF <dotslash () snosoft com>
Date: Wed, 26 Jun 2002 23:17:15 -0400

So what you are saying is that you found a buffer overflow in some code that uses JNI? As in there was some c based code that the java invoked? I am currious to see how this works.
-KF


Dave Aitel wrote:

Although, as another poster said, native code invocation is going to
continue to be a problem for managed languages such as Java and C# in
the years to come.
I've found a buffer overflow in native code invoked by a major
application server that happened to be written in Java. It's fixed now,
btw. :>

-dave







Current thread: