[901] in WWW Security List Archive
Re: Java
daemon@ATHENA.MIT.EDU (Rich Salz)
Fri Sep 22 04:33:59 1995
From: Rich Salz <rsalz@osf.org>
Date: Fri, 22 Sep 1995 01:37:09 -0400
To: www-security@ns2.rutgers.edu
Errors-To: owner-www-security@ns2.rutgers.edu
>Java does not allow system calls so write, piping, etc cannot be used
>to fill up or overwrite disks.
Java allows applets to create files. The language has no bytelimits so
protection from full disks is an implementation issue.
>I think the java security is very well thought-out. I certainly couldn't think
>of any ways to improve it.
Suggest you re-evaluate.
/r$