Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: Proxy load balancer rules
- From: Phil Sutter <phil@xxxxxx>
- [MAINTENANCE] migrating git.netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 9/9] netfilter: audit table unregister actions
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 4/9] audit: record nfcfg params
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 2/9] netfilter: normalize ebtables function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_flowtable: fix documentation
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Proxy load balancer rules
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH nf-next] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 2/3] netfilter: flowtable: Fix missing flush hardware on table free
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 3/3] netfilter: flowtable: Fix setting forgotten NF_FLOW_HW_DEAD flag
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 1/3] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 0/3] Various fixes for flowtable hardware offload
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 2/4] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 1/4] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 0/4] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 3/3] set_elem: Introduce support for NFTNL_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 1/3] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 2/3] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 0/3] Attributes for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- use of netfilter-announce list
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [PATCH nf-next V2] netfilter: ctnetlink: add kernel side filtering for dump
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 2/2] utils: add NFCT_FILTER_DUMP_TUPLE example
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Use kvcalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/6] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: syzbot <syzbot+f3e96783d74ee8ea9aa3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- INFO: rcu detected stall in hash_ip4_gc
- From: syzbot <syzbot+68a806795ac89df3aa1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in ip_set_comment_free
- From: syzbot <syzbot+6a86565c74ebe30aea18@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 0/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/7] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] net: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nft_osf: add missing check for DREG attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_uadd
- From: syzbot <syzbot+4b0e9d4ff3cf117837e5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.4 060/107] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 059/107] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 090/107] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 092/107] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 094/107] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 091/107] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 093/107] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 095/107] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 29/56] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 30/56] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 48/56] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 49/56] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 52/56] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 51/56] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 14/32] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 15/32] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 11/18] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 10/18] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.4 5/9] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 50/56] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] src: Quote user-defined names
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: stranche@xxxxxxxxxxxxxx
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Darrick J. Wong" <darrick.wong@xxxxxxxxxx>
- [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Covscan-induced review of ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4/4] xt_mttg_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 3/4] recent_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 2/4] synproxy_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 0/4] netfilter: seq_file .next functions should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 1/4] ct_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Sean Tranchetti <stranche@xxxxxxxxxxxxxx>
- [PATCH] ipvs: fix spelling mistake "to" -> "too"
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] tests: shell: update list of rmmod modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: shell: set lookup and set update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 15/16] audit: check contid count per netns and add config param limit
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 14/16] audit: check contid depth and add limit config param
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: general protection fault in nf_flow_table_offload_setup
- From: syzbot <syzbot+e93c1d9ae19a0236289c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 8/9] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 6/9] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 7/9] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 4/9] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 3/9] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 2/9] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 1/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING: suspicious RCU usage in find_set_and_id
- From: syzbot <syzbot+fc69d7cb21258ab4ae4d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- general protection fault in __nf_tables_chain_type_lookup
- From: syzbot <syzbot+c4a099076c8ad98e282d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Update on UAF in ip6_do_table on 4.19.X kernel
- From: stranche@xxxxxxxxxxxxxx
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Fixes for a recent covscan run
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: kbuild test robot <lkp@xxxxxxxxx>
- [iptables PATCH] .gitignore: add nano/vim swap file
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Christian Brauner <christian.brauner@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: Phil Sutter <phil@xxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+c400f7b04cadb5df6ea7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+6491ea8f6dddbf04930e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+6491ea8f6dddbf04930e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v3 3/9] netlink_delinearize: fix typo.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 5/9] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 7/9] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 8/9] netlink: add support for handling shift expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 6/9] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 4/9] netlink_delinearize: remove commented out pr_debug statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 2/9] src: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 1/9] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: use bitmap infrastructure completely
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+b554d01b6c7870b17da2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v2 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Jiri Wiesner <jwiesner@xxxxxxxx>
- general protection fault in nf_flow_table_offload_setup
- From: syzbot <syzbot+e93c1d9ae19a0236289c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl v3 2/2] set_elem: Introduce support for NFTNL_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v3 0/2] Attributes for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 1/3] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 8/9] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 7/9] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 6/9] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 4/9] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 3/9] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 2/9] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 1/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+b554d01b6c7870b17da2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] include: nf_tables: correct bitwise header comment.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_ext_cleanup
- From: syzbot <syzbot+7b6206fb525c1f5ec3f8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_ext_cleanup
- From: syzbot <syzbot+7b6206fb525c1f5ec3f8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: nf_tables_offload: fix check the chain offload flag
- [PATCH nf] netfilter: nf_tables_offload: fix check the chain offload flag
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_gc
- From: syzbot <syzbot+df0d0f5895ef1f41a65b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- From: wenxu <wenxu@xxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: syzbot <syzbot+f3e96783d74ee8ea9aa3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_gc
- From: syzbot <syzbot+53cdd0ec0bbabd53370a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v2 2/9] src: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 5/9] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 7/9] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 8/9] netlink: add support for handling shift expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 1/9] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 6/9] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 4/9] netlink_delinearize: remove commented out pr_debug statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 3/9] netlink_delinearize: fix typo.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove tail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v2 0/6] bitwise shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: flowtable: remove dying bit, use teardown bit instead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: flowtable: add nf_flowtable_hw_offload() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: flowtable: add nf_flow_offload_work_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: nf_tables: white-space fixes.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: flowtable: refresh flow if hardware offload fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: hashlimit: do not use indirect calls during gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: bitwise: replace gotos with returns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: flowtable: add nf_flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: bitwise: add helper for initializing boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: bitwise: add helper for dumping boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: bitwise: only offload boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: bitwise: add support for shifts.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: flowtable: use atomic bitwise operations for flow flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: flowtable: fetch stats only if flow is still alive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: nft_bitwise: correct uapi header comment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_port_destroy
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_gc
- From: syzbot <syzbot+53cdd0ec0bbabd53370a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_port_destroy
- From: syzbot <syzbot+8ccfc03b082d0ab9b84b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_test
- From: syzbot <syzbot+b08bd19bb37513357fd4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_gc
- From: syzbot <syzbot+df0d0f5895ef1f41a65b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: BUG: corrupted list in __nf_tables_abort
- From: syzbot <syzbot+437bf61d165c87bd40fb@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Jiri Wiesner <jwiesner@xxxxxxxx>
- Re: [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Fernando Fernández Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl v2 0/6] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_list
- From: syzbot <syzbot+190d63957b22ef673ea5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in __nf_tables_abort
- From: syzbot <syzbot+437bf61d165c87bd40fb@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in nft_parse_register
- From: syzbot <syzbot+cf23983d697c26c34f60@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_add
- From: syzbot <syzbot+dfccdb2bdb4a12ad425e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_list
- From: syzbot <syzbot+190d63957b22ef673ea5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_list
- From: syzbot <syzbot+827ced406c9a1d9570ed@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_list
- From: syzbot <syzbot+fabca5cbf5e54f3fe2de@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl v2 6/6] bitwise: add support for left- and right-shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 5/6] bitwise: add support for new netlink attributes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 4/6] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 2/6] bitwise: fix some incorrect indentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 3/6] bitwise: add helper to print boolean expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 0/6] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 1/6] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH netfilter/iptables] Add new slavedev match extension
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove head
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter updates for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: BUG: corrupted list in nf_tables_commit
- From: syzbot <syzbot+37a6804945a3a13b1572@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/4] netfilter: flowtable: add indr-block offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter/iptables] Add new slavedev match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nf_tables: store transaction list locally while requesting module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nft_tunnel: fix null-attribute check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nf_tables: fix flowtable list del corruption
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: fix a use-after-free in mtype_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter updates for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.4 148/205] netfilter: nf_tables_offload: release flow_rule on error from commit path
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 032/671] netfilter: nft_osf: usage from output path is not valid
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 037/671] netfilter: nf_flow_table: do not remove offload when other netns's interface is down
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.19 225/671] netfilter: nft_set_hash: fix lookups with fixed size hash on big endian
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 226/671] netfilter: nft_set_hash: bogus element self comparison from deactivation path
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 320/671] netfilter: nft_flow_offload: add entry to flowtable after confirmation
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 349/671] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 355/671] netfilter: nf_tables: correct NFT_LOGLEVEL_MAX value
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 524/671] netfilter: ctnetlink: honor IPS_OFFLOAD flag
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 126/371] netfilter: nft_set_hash: fix lookups with fixed size hash on big endian
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 197/371] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 137/251] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.4 089/174] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH] Fixed some man pages typos ('This modules' -> 'This module')
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: BUG: corrupted list in nft_obj_del
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_bitwise: correct uapi header comment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: hashlimit: do not use indirect calls during gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 8/9] netfilter: flowtable: add nf_flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Fix indenting weirdness is pktbuff.c w/out changing indent
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_tunnel: fix null-attribute check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix flowtable list del corruption
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] cache: Fix for doubled output after reset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] tests: shell: Search diff tool once and for all
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix flowtable list del corruption
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in nft_request_module
- From: syzbot <syzbot+0e63ae76d117ae1c3a01@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_tunnel: fix null-attribute check
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: BUG: corrupted list in nft_obj_del
- From: syzbot <syzbot+6ca99af7e70e298bd09d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- memory leak in nf_tables_parse_netdev_hooks
- From: syzbot <syzbot+f9d4095107fc8749c69c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] Fixed some man pages typos ('This modules' -> 'This module')
- From: aa.santos@xxxxxxxxxxxxxxxxx
- WARNING in nft_request_module
- From: syzbot <syzbot+0e63ae76d117ae1c3a01@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in nf_tables_commit
- From: syzbot <syzbot+37a6804945a3a13b1572@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in nft_tunnel_get_init
- From: syzbot <syzbot+76d0b80493ac881ff77b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in nft_obj_del
- From: syzbot <syzbot+6ca99af7e70e298bd09d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf-next v4 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 04/10] netfilter: bitwise: add NFTA_BITWISE_OP attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 04/10] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Fix indenting weirdness is pktbuff.c w/out changing indent
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 04/10] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] tests: shell: Search diff tool once and for all
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/2] cache: Fix for doubled output after reset command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] xfrm: spi is big endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] xfrm: spi is big endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] xfrm: spi is big endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v4 3/4] netfilter: flowtable: add tunnel match offload support
- [PATCH nf-next v4 4/4] netfilter: flowtable: add tunnel encap/decap action offload support
- [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- [PATCH nf-next v4 0/4] netfilter: flowtable: add indr-block offload
- [PATCH nf-next v4 1/4] netfilter: flowtable: add nf_flow_table_block_offload_init()
- [PATCH nf-next,v2 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 8/9] netfilter: flowtable: add flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- [NET] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [PATCH nf-next 8/9] netfilter: flowtable: add flow_offload_tuple() helper
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: add kernel side filtering for dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: bitwise: add support for shifts.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- WARNING: locking bug in finish_task_switch
- From: syzbot <syzbot+edec84a8b77e5a0cae31@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/9] netfilter: flowtable: add nf_flowtable_hw_offload() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/9] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 7/9] netfilter: flowtable: refresh flow if hardware offload fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 8/9] netfilter: flowtable: add flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/9] netfilter: flowtable: remove dying bit, use teardown bit instead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 5/9] netfilter: flowtable: use atomic bitwise operations for flow flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/9] netfilter: flowtable: add nf_flow_offload_work_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/9] netfilter: flowtable: fetch stats only if flow is still alive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch net] netfilter: fix a use-after-free in mtype_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: store transaction list locally while requesting module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] monitor: Fix output for ranges in anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] monitor: Fix output for ranges in anonymous sets
- From: Phil Sutter <phil@xxxxxx>
- vmaps and default action
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in xt_rateest_put
- From: syzbot <syzbot+91bdd8eece0f6629ec8b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in xt_rateest_put
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: general protection fault in xt_rateest_put
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in xt_rateest_put
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- general protection fault in xt_rateest_put
- From: syzbot <syzbot+91bdd8eece0f6629ec8b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [Patch net] netfilter: fix a use-after-free in mtype_destroy()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_port_ext_cleanup
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_port_ext_cleanup
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- KASAN: use-after-free Read in bitmap_port_ext_cleanup
- From: syzbot <syzbot+4c3cc6dbe7259dbf9054@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter/iptables] Add new slavedev match extension
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: better error notice when interval flag is not set on
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Phil Sutter <phil@xxxxxx>
- Re: Unable to create htb tc classes more than 64K
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- [PATCH nft 6/7] netlink: add support for handling shift expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 7/7] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 5/7] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 1/7] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 4/7] netlink_delinearize: remove commented out pr_debug statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 2/7] src: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 3/7] netlink_delinearize: fix typo.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 0/7] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 2/2] bitwise: add support for left and right shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 1/2] gitignore: add tag and Emacs back-up files.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 0/2] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [nft PATCH 3/3] tests: monitor: Support running individual test cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/3] monitor: Fix for use after free when printing map elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/3] monitor: Do not decompose non-anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Fix value returned by nfq_tcp_get_payload_len()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Final polish for current round
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC libnetfilter_queue] src: Simplify struct pkt_buff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 0/3] Fixes for monitor/echo mode with maps
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/3] tests: monitor: Support running individual test cases
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/3] monitor: Fix for use after free when printing map elements
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/3] monitor: Do not decompose non-anonymous sets
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] evaluate: better error notice when interval flag is not set on
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC libnetfilter_queue] src: Simplify struct pkt_buff
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: doc: Final polish for current round
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 7.5 released
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft 3/3] main: add -w/--netns option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] main: split parsing from libnftables initialization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/3] netns support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] main: restore --debug
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nf_flow_table_offload: fix incorrect ethernet dst address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_flow_table_offload: check the status of dst_neigh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: flowtable: add nf_flowtable_time_stamp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_flow_table_offload: fix the nat port mangle.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: conntrack: dccp, sctp: handle null timeout argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: unbind callbacks from flowtable destroy path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: nft_flow_offload: fix underflow in flowtable reference counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: arp_tables: init netns pointer in xt_tgchk_param struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC libnetfilter_queue 0/1] Make usable man pages
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft v3] evaluate: fix expr_set_context call for shift binops.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: dccp, sctp: handle null timeout argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: general protection fault in hash_ipportnet4_uadt
- From: syzbot <syzbot+34bd2369d38707f3f4a7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: general protection fault in hash_ipportip6_uadt
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- general protection fault in hash_ipportip6_uadt
- From: syzbot <syzbot+19df0457b3f8383e02bd@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [RFC nf-next 4/4] netfilter: conntrack: allow insertion of duplicate/clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 3/4] netfilter: conntrack: split resolve_clash function
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 2/4] netfilter: conntrack: place confirm-bit setting in a helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 1/4] netfilter: conntrack: remove two args from resolve_clash
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_mac4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_netport4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_ipportnet6_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_ip4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_netport6_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_net4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_netnet4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_ip6_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: general protection fault in hash_ipport4_uadt
- From: Florian Westphal <fw@xxxxxxxxx>
- WARN on nft_set_destroy (probably use-after-free)
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- general protection fault in hash_ip4_uadt
- From: syzbot <syzbot+0be5fe9e46479a332a4a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_ip6_uadt
- From: syzbot <syzbot+7f87c1e8811ab0c1ca1f@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_net4_uadt
- From: syzbot <syzbot+b8e32edde51fdcc8c2c4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_netnet4_uadt
- From: syzbot <syzbot+654d1074cc322943fbba@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_netport6_uadt
- From: syzbot <syzbot+e2362b2c3f229b2c9447@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_ipportnet6_uadt
- From: syzbot <syzbot+6da1a8be3fc79ab3e2d9@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_ipport4_uadt
- From: syzbot <syzbot+f35ea63f7eb0be42fa5d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_netport4_uadt
- From: syzbot <syzbot+83fef78f45f4342655d8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Adding NAT64 to Netfilter
- From: Alberto Leiva <ydahhrk@xxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: Fix value returned by nfq_tcp_get_payload_len()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] src: Fix value returned by nfq_tcp_get_payload_len()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: general protection fault in hash_mac4_uadt
- From: syzbot <syzbot+cabfabc5c6bf63369d04@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: general protection fault in hash_ipportnet4_uadt
- From: syzbot <syzbot+34bd2369d38707f3f4a7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_mac4_uadt
- From: syzbot <syzbot+cabfabc5c6bf63369d04@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: task hung in ip_set_net_exit
- From: syzbot <syzbot+06b04e24a895e5e349f0@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: task hung in nfnetlink_rcv_msg
- From: syzbot <syzbot+da20e617ce568adf13f3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in hash_ipportnet4_uadt
- From: syzbot <syzbot+34bd2369d38707f3f4a7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Adding NAT64 to Netfilter
- From: Laurent Fasnacht <lf@xxxxxx>
- Re: Adding NAT64 to Netfilter
- From: Laura Garcia <nevola@xxxxxxxxx>
- [PATCH nf-next] netfilter: hashlimit: do not use indirect calls during gc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: add kernel side filtering for dump
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- Re: general protection fault in dccp_timeout_nlattr_to_obj
- From: syzbot <syzbot+46a4ad33f345d1dd346e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: flowtable: refresh flow if hardware offload fails
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nft v3] evaluate: fix expr_set_context call for shift binops.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: dccp, sctp: handle null timeout argument
- From: Florian Westphal <fw@xxxxxxxxx>
- general protection fault in dccp_timeout_nlattr_to_obj
- From: syzbot <syzbot+46a4ad33f345d1dd346e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak25 v2 2/9] netfilter: normalize ebtables function declarations
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ghak25 v2 9/9] netfilter: audit table unregister actions
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 6/9] netfilter: ebtables audit only on syscall rule
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 5/9] netfilter: x_tables audit only on syscall rule
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 4/9] audit: record nfcfg params
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 2/9] netfilter: normalize ebtables function declarations
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH 2/7] nft: split parsing from netlink commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] nft: calculate cache requirements from list of commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] nft: missing nft_fini() call in bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] nft: remove cache build calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] nft: restore among support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] nft: skip table list release if uninitialized
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] nft: do not check for existing chain from parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] iptables: introduce cache evaluation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: flowtable: refresh flow if hardware offload fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] evaluate: fix expr_set_context call for shift binops.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft v2] evaluate: fix expr_set_context call for shift binops.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v3] netfilter: flowtable: add nf_flowtable_time_stamp
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf,v3] netfilter: flowtable: add nf_flowtable_time_stamp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC libnetfilter_queue 0/1] Make usable man pages
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH RFC libnetfilter_queue 1/1] doc: setup: Add shell script fixmanpages.sh to make usable man pages
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: flowtable: add nf_flowtable_time_stamp
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: flowtable: fetch stats only if flow is still alive
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] src: Add alternative function to pktb_alloc to avoid malloc / free overhead
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]