[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-Id: <20091110104014.8250.89589.sendpatchset@x2.localnet>
Date: Tue, 10 Nov 2009 11:40:18 +0100 (MET)
From: Patrick McHardy <kaber@...sh.net>
To: stable@...nel.org
Cc: netdev@...r.kernel.org, Patrick McHardy <kaber@...sh.net>,
netfilter-devel@...r.kernel.org, davem@...emloft.net
Subject: netfilter -stable 00/02: netfilter -stable fixes
The following two patches fix two bug in netfilter:
- a bug in TCP conntrack sequence tracking when used with NAT helpers that
enlarge packets
- a regression in the xt_connlimit match introduced in 2.6.29, causing
false negatives
Please apply, thanks.
include/net/netfilter/nf_conntrack.h | 8 +--
include/net/netfilter/nf_nat_helper.h | 4 ++
net/ipv4/netfilter/nf_nat_core.c | 3 +
net/ipv4/netfilter/nf_nat_helper.c | 34 +++++++++++-----
net/netfilter/nf_conntrack_core.c | 8 ++++
net/netfilter/nf_conntrack_proto_tcp.c | 64 +++++++++++++-------------------
net/netfilter/xt_connlimit.c | 10 ++---
7 files changed, 71 insertions(+), 60 deletions(-)
Jan Engelhardt (1):
netfilter: xt_connlimit: fix regression caused by zero family value
Jozsef Kadlecsik (1):
netfilter: nf_nat: fix NAT issue in 2.6.30.4+
--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Powered by blists - more mailing lists