]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nft_exthdr: break evaluation if setting TCP option fails
authorPablo Neira Ayuso <pablo@netfilter.org>
Tue, 30 Nov 2021 10:34:04 +0000 (11:34 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Wed, 8 Dec 2021 00:05:55 +0000 (01:05 +0100)
commit57b4bba802ad98c39b2913d197f5fc6b66d48c2e
treeb798c33b9485823c743f05c8039edb1f8272f6d3
parentbf7d954071bf365cc378a1b6790e098bf2787468
netfilter: nft_exthdr: break evaluation if setting TCP option fails

Break rule evaluation on malformed TCP options.

Fixes: 5cdbff7b69e1 ("netfilter: exthdr: tcp option set support")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nft_exthdr.c