CWE-1235 — Incorrect Use of Autoboxing and Unboxing for Performance Critical Operations
CWE-1235: Incorrect Use of Autoboxing and Unboxing for Performance Critical Operations
MITRE CWE weakness
| Kind | Weakness |
| Abstraction | Base |
| Status | Incomplete |
| Likelihood of exploit | — |
Description
The code uses boxed primitives, which may introduce inefficiencies into performance-critical operations.
Common consequences
- Availability: DoS: Resource Consumption (CPU), DoS: Resource Consumption (Memory), DoS: Resource Consumption (Other), Reduce Performance
Mitigations
Implementation — Use of boxed primitives should be limited to certain situations such as when calling methods with typed parameters. They should not be used for scientific computing or other performance critical operations. They are only suited to support "impedance mismatch" between reference types and primitives. Examine the use of boxed primitives prior to use. Use SparseArrays or ArrayMap instead of HashMap to avoid performance overhead.
References
- CWE page: https://cwe.mitre.org/data/definitions/1235.html
- CWE list: https://cwe.mitre.org/data/index.html