maven-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Michael Osipov (JIRA)" <j...@apache.org>
Subject [jira] [Comment Edited] (WAGON-481) Sensitive (auth) information is not cleared when HttpClientWagon is disconnected
Date Tue, 03 Jan 2017 22:06:58 GMT

    [ https://issues.apache.org/jira/browse/WAGON-481?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15796335#comment-15796335
] 

Michael Osipov edited comment on WAGON-481 at 1/3/17 10:06 PM:
---------------------------------------------------------------

Fixed with [7fd0dca33656e5f961e9234258db9e3a2cec0d9f|https://git-wip-us.apache.org/repos/asf?p=maven-wagon.git;a=commit;h=7fd0dca33656e5f961e9234258db9e3a2cec0d9f].


was (Author: michael-o):
Fixed with [7fd0dca33656e5f961e9234258db9e3a2cec0d9f |https://git-wip-us.apache.org/repos/asf?p=maven-wagon.git;a=commit;h=7fd0dca33656e5f961e9234258db9e3a2cec0d9f].

> Sensitive (auth) information is not cleared when HttpClientWagon is disconnected
> --------------------------------------------------------------------------------
>
>                 Key: WAGON-481
>                 URL: https://issues.apache.org/jira/browse/WAGON-481
>             Project: Maven Wagon
>          Issue Type: Bug
>          Components: wagon-http
>    Affects Versions: 2.11
>            Reporter: Michael Osipov
>            Assignee: Michael Osipov
>             Fix For: 2.12
>
>
> {{AuthCache}} and {{CredentialsProvider}} are never cleared when {{Wagon#disconnect()}}
is called which may leave sensitive information in memory.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message