]
Ondrej Lukas updated ELY-611:
-----------------------------
Fix Version/s: 1.1.0.Beta8
Unintentional integer overflow in LongNameSetPermissionCollection
-----------------------------------------------------------------
Key: ELY-611
URL:
https://issues.jboss.org/browse/ELY-611
Project: WildFly Elytron
Issue Type: Bug
Affects Versions: 1.1.0.Beta7
Reporter: Ondrej Lukas
Assignee: Darran Lofthouse
Labels: static_analysis
Fix For: 1.1.0.Beta8
There are potentially overflowing expressions in
org.wildfly.security.permission.LongNameSetPermissionCollection in {{getBitsForName}}
method. Expressions {{1 << nameEnumeration.size()}} and {{1 <<
nameEnumeration.indexOf(name)}} are evaluated as integer but assigned to {{bits}} variable
which is long. It can be avoided by casting {{1}} to long.