On Wed, Jul 04, 2018 at 08:25:32PM +0200, Florian Westphal wrote: > nft_compat relies on xt_request_find_match to increment > refcount of the module that provides the match/target. > > The (builtin) icmp matches did't set the module owner so it > was possible to rmmod ip(6)tables while icmp extensions were still in use. Applied, thanks Florian. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html