]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nf_tables: stricter validation of element data
authorPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 02:16:30 +0000 (04:16 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 19:04:10 +0000 (21:04 +0200)
commitf9b73cd73839984bac5b284e15b61997e76dd818
treea4418248c8ef89042ae48ab8e2cb11da4f59da2c
parentb5f745824ea1fc7d4bd75dab4ceec6cd76a408aa
netfilter: nf_tables: stricter validation of element data

Make sure element data type and length do not mismatch the one specified
by the set declaration.

Fixes: ef5485c9b3ef ("netfilter: nf_tables: variable sized set element keys / data")
Reported-by: Hugues ANGUELKOV <hanguelkov@randorisec.fr>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nf_tables_api.c