[ 
https://issues.apache.org/jira/browse/AVRO-4329?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Ismaël Mejía reassigned AVRO-4329:
----------------------------------


> [Java] Bound bytes/string allocation on non-seekable streams
> ------------------------------------------------------------
>
>                 Key: AVRO-4329
>                 URL: https://issues.apache.org/jira/browse/AVRO-4329
>             Project: Apache Avro
>          Issue Type: Sub-task
>          Components: java
>            Reporter: Ismaël Mejía
>            Assignee: Ismaël Mejía
>            Priority: Major
>
> Java SDK implementation of AVRO-4303.
> When the number of bytes remaining is unknown (a non-seekable stream), read a 
> bytes/string value into a buffer that grows in bounded chunks rather than 
> allocating the full attacker-declared length up front, so a truncated or 
> hostile stream fails with a bounded EOFException instead of an 
> OutOfMemoryError. Applied to BinaryDecoder and DirectBinaryDecoder; the 
> existing single-allocation fast path is kept when the remaining byte count is 
> known.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to