]> git.baikalelectronics.ru Git - kernel.git/commit
nfnetlink: do not ack malformed messages
authorJiri Benc <jbenc@redhat.com>
Thu, 7 Nov 2013 18:59:19 +0000 (19:59 +0100)
committerDavid S. Miller <davem@davemloft.net>
Fri, 8 Nov 2013 20:12:11 +0000 (15:12 -0500)
commit3214b400d8c013217d0213c5c31bf56b72360d96
treeadaff9745719732f3ff93abae3f52fa94b80db18
parentbd0b1d4e1f88fd358bd282e6ef503cfa1cbdb24b
nfnetlink: do not ack malformed messages

Commit 842ececf45fc ("netfilter: nfnetlink: add batch support and use it
from nf_tables") introduced a bug leading to various crashes in netlink_ack
when netlink message with invalid nlmsg_len was sent by an unprivileged
user.

Signed-off-by: Jiri Benc <jbenc@redhat.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
net/netfilter/nfnetlink.c