Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
openanolis
dragonwell8_jdk
提交
f39a43ac
D
dragonwell8_jdk
项目概览
openanolis
/
dragonwell8_jdk
通知
4
Star
2
Fork
0
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
D
dragonwell8_jdk
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
提交
f39a43ac
编写于
10月 14, 2015
作者:
V
vinnie
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
8136534: Loading JKS keystore using non-null InputStream results in closed stream
Reviewed-by: mullan, wetmore
上级
6f254023
变更
2
隐藏空白更改
内联
并排
Showing
2 changed file
with
91 addition
and
44 deletion
+91
-44
src/share/classes/sun/security/provider/KeyStoreDelegator.java
...hare/classes/sun/security/provider/KeyStoreDelegator.java
+42
-44
test/java/security/KeyStore/CheckInputStream.java
test/java/security/KeyStore/CheckInputStream.java
+49
-0
未找到文件。
src/share/classes/sun/security/provider/KeyStoreDelegator.java
浏览文件 @
f39a43ac
...
...
@@ -216,57 +216,55 @@ class KeyStoreDelegator extends KeyStoreSpi {
}
else
{
// First try the primary keystore then try the secondary keystore
try
(
InputStream
bufferedStream
=
new
BufferedInputStream
(
stream
))
{
bufferedStream
.
mark
(
Integer
.
MAX_VALUE
);
InputStream
bufferedStream
=
new
BufferedInputStream
(
stream
);
bufferedStream
.
mark
(
Integer
.
MAX_VALUE
);
try
{
keystore
=
primaryKeyStore
.
newInstance
();
type
=
primaryType
;
keystore
.
engineLoad
(
bufferedStream
,
password
);
}
catch
(
Exception
e
)
{
// incorrect password
if
(
e
instanceof
IOException
&&
e
.
getCause
()
instanceof
UnrecoverableKeyException
)
{
throw
(
IOException
)
e
;
}
try
{
keystore
=
primaryKeyStore
.
newInstance
();
type
=
primaryType
;
keystore
=
secondaryKeyStore
.
newInstance
();
type
=
secondaryType
;
bufferedStream
.
reset
();
keystore
.
engineLoad
(
bufferedStream
,
password
);
}
catch
(
Exception
e
)
{
if
(
debug
!=
null
)
{
debug
.
println
(
"WARNING: switching from "
+
primaryType
+
" to "
+
secondaryType
+
" keystore file format has altered the "
+
"keystore security level"
);
}
}
catch
(
InstantiationException
|
IllegalAccessException
e2
)
{
// can safely ignore
}
catch
(
IOException
|
NoSuchAlgorithmException
|
CertificateException
e3
)
{
// incorrect password
if
(
e
instanceof
IOException
&&
e
.
getCause
()
instanceof
UnrecoverableKeyException
)
{
throw
(
IOException
)
e
;
if
(
e3
instanceof
IOException
&&
e3
.
getCause
()
instanceof
UnrecoverableKeyException
)
{
throw
(
IOException
)
e3
;
}
try
{
keystore
=
secondaryKeyStore
.
newInstance
();
type
=
secondaryType
;
bufferedStream
.
reset
();
keystore
.
engineLoad
(
bufferedStream
,
password
);
if
(
debug
!=
null
)
{
debug
.
println
(
"WARNING: switching from "
+
primaryType
+
" to "
+
secondaryType
+
" keystore file format has altered the "
+
"keystore security level"
);
}
}
catch
(
InstantiationException
|
IllegalAccessException
e2
)
{
// can safely ignore
}
catch
(
IOException
|
NoSuchAlgorithmException
|
CertificateException
e3
)
{
// incorrect password
if
(
e3
instanceof
IOException
&&
e3
.
getCause
()
instanceof
UnrecoverableKeyException
)
{
throw
(
IOException
)
e3
;
}
// rethrow the outer exception
if
(
e
instanceof
IOException
)
{
throw
(
IOException
)
e
;
}
else
if
(
e
instanceof
CertificateException
)
{
throw
(
CertificateException
)
e
;
}
else
if
(
e
instanceof
NoSuchAlgorithmException
)
{
throw
(
NoSuchAlgorithmException
)
e
;
}
// rethrow the outer exception
if
(
e
instanceof
IOException
)
{
throw
(
IOException
)
e
;
}
else
if
(
e
instanceof
CertificateException
)
{
throw
(
CertificateException
)
e
;
}
else
if
(
e
instanceof
NoSuchAlgorithmException
)
{
throw
(
NoSuchAlgorithmException
)
e
;
}
}
}
...
...
test/java/security/KeyStore/CheckInputStream.java
0 → 100644
浏览文件 @
f39a43ac
/*
* Copyright (c) 2015, Oracle and/or its affiliates. All rights reserved.
* DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
*
* This code is free software; you can redistribute it and/or modify it
* under the terms of the GNU General Public License version 2 only, as
* published by the Free Software Foundation.
*
* This code is distributed in the hope that it will be useful, but WITHOUT
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
* FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
* version 2 for more details (a copy is included in the LICENSE file that
* accompanied this code).
*
* You should have received a copy of the GNU General Public License version
* 2 along with this work; if not, write to the Free Software Foundation,
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
*
* Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
* or visit www.oracle.com if you need additional information or have any
* questions.
*/
/*
* @test
* @bug 8136534
* @summary The input stream supplied to KeyStore.load should remain open.
*/
import
java.io.*
;
import
java.security.*
;
public
class
CheckInputStream
{
private
final
static
String
DIR
=
System
.
getProperty
(
"test.src"
,
"."
);
private
static
final
char
[]
PASSWORD
=
"passphrase"
.
toCharArray
();
private
static
final
String
KEYSTORE
=
DIR
+
"/keystore.jks"
;
public
static
final
void
main
(
String
[]
args
)
throws
Exception
{
KeyStore
keystore
=
KeyStore
.
getInstance
(
"JKS"
);
try
(
FileInputStream
inStream
=
new
FileInputStream
(
KEYSTORE
))
{
System
.
out
.
println
(
"Loading JKS keystore: "
+
KEYSTORE
);
keystore
.
load
(
inStream
,
PASSWORD
);
// check that the stream is still open
inStream
.
available
();
System
.
out
.
println
(
"OK"
);
}
}
}
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录