[ 
https://issues.apache.org/jira/browse/LUCENE-9517?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17193074#comment-17193074
 ] 

Uwe Schindler commented on LUCENE-9517:
---------------------------------------

[~ivera]: Do you think this is fine? To me this is not as elegant as the 
previous solution (as it's not a fix for the ByteBuffer method), but works 
without subclassing.

Will commit.

> BugfixDeflater_JDK8252739 causes Java security issues in JDk11
> --------------------------------------------------------------
>
>                 Key: LUCENE-9517
>                 URL: https://issues.apache.org/jira/browse/LUCENE-9517
>             Project: Lucene - Core
>          Issue Type: Bug
>            Reporter: Ignacio Vera
>            Assignee: Uwe Schindler
>            Priority: Major
>          Time Spent: 3h
>  Remaining Estimate: 0h
>
> We are running into issues when running Elasticsearch CI with java security 
> turned on and using JDK11 (only for the ones that contains the jdk bug ).   
> The errors look like:
>  
>  
> {code:java}
> java.security.AccessControlException: access denied 
> ("java.lang.RuntimePermission" "accessDeclaredMembers") {code}
>  
> The issue seems to be here:
> [http://hg.openjdk.java.net/jdk/jdk11/file/1ddf9a99e4ad/src/java.base/share/classes/java/util/zip/Deflater.java#l989]
> As we now have a subclass that wants to run this code. Note that this code 
> has been removed in JDK12 and above.
> We might need to wrap the creation of this object in a doPriviledged Block or 
> find a different solution that does not need to subclass the Deflater class.
>  
> cc: [~uschindler]
>  
>  
>  



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscr...@lucene.apache.org
For additional commands, e-mail: issues-h...@lucene.apache.org

Reply via email to