Must free ct and exp using the _destroy functions, else we leak attributes with malloc'd data. Signed-off-by: Florian Westphal <fw@xxxxxxxxx> --- src/callback.c | 34 ++++++++-------------------------- 1 files changed, 8 insertions(+), 26 deletions(-) diff --git a/src/callback.c b/src/callback.c index 684d3b2..19cc663 100644 --- a/src/callback.c +++ b/src/callback.c @@ -82,31 +82,13 @@ int __callback(struct nlmsghdr *nlh, struct nfattr *nfa[], void *data) break; } - switch(ret) { - case NFCT_CB_FAILURE: - if (ct) - free(ct); - if (exp) - free(exp); - ret = NFNL_CB_FAILURE; - break; - case NFCT_CB_STOP: - if (ct) - free(ct); - if (exp) - free(exp); - ret = NFNL_CB_STOP; - break; - case NFCT_CB_CONTINUE: - if (ct) - free(ct); - if (exp) - free(exp); - ret = NFNL_CB_CONTINUE; - break; - case NFCT_CB_STOLEN: - ret = NFNL_CB_CONTINUE; - break; - } + if (ret == NFCT_CB_STOLEN) + return NFNL_CB_CONTINUE; + + if (ct) + nfct_destroy(ct); + if (exp) + nfexp_destroy(exp); + return ret; } -- 1.7.8.6 -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html