-
Task
-
Resolution: Done
-
Major
-
3.0.1.Final
-
None
-
False
-
None
-
False
-
-
As described in WFLY-14769 there is a possibility to access UserTransaction object using txn namespace lookup when it is not allowed by the EJB spec. We have to introduce a access checking mechanism so that this access is prevented.
- is cloned by
-
JBEAP-26264 (7.4.z)[GSS] WFTC-138 - Add access checking API to TxnNamingContextFactory
- Closed
- relates to
-
WFLY-14769 Lookup of txn:LocalUserTransaction makes it possible to illegally use UserTransaction in a CMT context
- Closed