]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nft_ct: fix unconditional dump of 'dir' attr
authorArturo Borrero <arturo.borrero.glez@gmail.com>
Fri, 17 Jan 2014 01:28:45 +0000 (02:28 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Wed, 5 Feb 2014 12:16:17 +0000 (13:16 +0100)
commit3da1b47a80c13963cc4aa0e5f16715cd25fbef90
tree5099bc9bb244f5d157bd4d10397f31a4588a7210
parent9a6ec1685684d35cf7441241bf762601547a031d
netfilter: nft_ct: fix unconditional dump of 'dir' attr

We want to make sure that the information that we get from the kernel can
be reinjected without troubles. The kernel shouldn't return an attribute
that is not required, or even prohibited.

Dumping unconditionally NFTA_CT_DIRECTION could lead an application in
userspace to interpret that the attribute was originally set, while it
was not.

Signed-off-by: Arturo Borrero Gonzalez <arturo.borrero.glez@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nft_ct.c