Re: [PATCH net 1/3] netfilter: nft_inner: validate mandatory meta and payload

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello:

This series was applied to netdev/net.git (main)
by Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>:

On Wed, 12 Jun 2024 00:03:21 +0200 you wrote:
> From: Davide Ornaghi <d.ornaghi97@xxxxxxxxx>
> 
> Check for mandatory netlink attributes in payload and meta expression
> when used embedded from the inner expression, otherwise NULL pointer
> dereference is possible from userspace.
> 
> Fixes: a150d122b6bd ("netfilter: nft_meta: add inner match support")
> Fixes: 3a07327d10a0 ("netfilter: nft_inner: support for inner tunnel header matching")
> Signed-off-by: Davide Ornaghi <d.ornaghi97@xxxxxxxxx>
> Signed-off-by: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
> 
> [...]

Here is the summary with links:
  - [net,1/3] netfilter: nft_inner: validate mandatory meta and payload
    https://git.kernel.org/netdev/net/c/c4ab9da85b9d
  - [net,2/3] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
    https://git.kernel.org/netdev/net/c/4e7aaa6b82d6
  - [net,3/3] netfilter: Use flowlabel flow key when re-routing mangled packets
    https://git.kernel.org/netdev/net/c/6f8f132cc7ba

You are awesome, thank you!
-- 
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html






[Index of Archives]     [Netfitler Users]     [Berkeley Packet Filter]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux