]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nf_tables: stricter validation of element data
authorPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 02:16:30 +0000 (04:16 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 19:04:10 +0000 (21:04 +0200)
commitbee06421687aba5401e8fb3735f3a63bbb6d0cbf
treea4418248c8ef89042ae48ab8e2cb11da4f59da2c
parent583e39d432dfe44dc0a44aded7d4b424bce554a4
netfilter: nf_tables: stricter validation of element data

Make sure element data type and length do not mismatch the one specified
by the set declaration.

Fixes: 4969e2e898fb ("netfilter: nf_tables: variable sized set element keys / data")
Reported-by: Hugues ANGUELKOV <hanguelkov@randorisec.fr>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nf_tables_api.c