diff options
author | Paolo Abeni <pabeni@redhat.com> | 2024-08-29 11:35:54 +0200 |
---|---|---|
committer | Paolo Abeni <pabeni@redhat.com> | 2024-08-29 11:35:54 +0200 |
commit | 0240bceb0dd567d8e129d965f57a40dccef8c953 (patch) | |
tree | 329f66eb2a88288c463cd7f1496b7369f6901e30 /io_uring/notif.c | |
parent | 6213dcc752f5d605cc50e08597f47fcbe658a40e (diff) | |
parent | 70c261d500951cf3ea0fcf32651aab9a65a91471 (diff) | |
download | linux-0240bceb0dd567d8e129d965f57a40dccef8c953.tar.gz linux-0240bceb0dd567d8e129d965f57a40dccef8c953.tar.bz2 linux-0240bceb0dd567d8e129d965f57a40dccef8c953.zip |
Merge tag 'nf-24-08-28' of git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf
Pablo Neira Ayuso says:
====================
Netfilter fixes for net
The following patchset contains Netfilter fixes for net:
Patch #1 sets on NFT_PKTINFO_L4PROTO for UDP packets less than 4 bytes
payload from netdev/egress by subtracting skb_network_offset() when
validating IPv4 packet length, otherwise 'meta l4proto udp' never
matches.
Patch #2 subtracts skb_network_offset() when validating IPv6 packet
length for netdev/egress.
netfilter pull request 24-08-28
* tag 'nf-24-08-28' of git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf:
netfilter: nf_tables_ipv6: consider network offset in netdev/egress validation
netfilter: nf_tables: restore IP sanity checks for netdev/egress
====================
Link: https://patch.msgid.link/20240828214708.619261-1-pablo@netfilter.org
Signed-off-by: Paolo Abeni <pabeni@redhat.com>
Diffstat (limited to 'io_uring/notif.c')
0 files changed, 0 insertions, 0 deletions