From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> Date: Wed, 13 Jun 2018 12:56:51 +0200 > The following patchset contains Netfilter patches for your net tree: > > 1) Fix NULL pointer dereference from nf_nat_decode_session() if NAT is > not loaded, from Prashant Bhole. > > 2) Fix socket extension module autoload. > > 3) Don't bogusly reject sets with the NFT_SET_EVAL flag set on from > the dynset extension. > > 4) Fix races with nf_tables module removal and netns exit path, > patches from Florian Westphal. > > 5) Don't hit BUG_ON if jumpstack goes too deep, instead hit > WARN_ON_ONCE, from Taehee Yoo. > > 6) Another NULL pointer dereference from ctnetlink, again if NAT is > not loaded, from Florian Westphal. > > 7) Fix x_tables match list corruption in xt_connmark module removal > path, also from Florian. > > 8) nf_conncount doesn't properly deal with conntrack zones, hence > garbage collector may get rid of entries in a different zone. > From Yi-Hung Wei. > > You can pull these changes from: > > git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf.git Pulled, thank you. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html