]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nft_exthdr: break evaluation if setting TCP option fails
authorPablo Neira Ayuso <pablo@netfilter.org>
Tue, 30 Nov 2021 10:34:04 +0000 (11:34 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Wed, 8 Dec 2021 00:05:55 +0000 (01:05 +0100)
commitcc12cc03a9d00c01114356e79bbdcf83e0bda6f4
treeb798c33b9485823c743f05c8039edb1f8272f6d3
parent97877b7d96952c5a9e37e0d1c3f63e1e72e74579
netfilter: nft_exthdr: break evaluation if setting TCP option fails

Break rule evaluation on malformed TCP options.

Fixes: d9711d6a4a55 ("netfilter: exthdr: tcp option set support")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nft_exthdr.c