[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-Id: <165405661321.30810.1706401303605363331.git-patchwork-notify@kernel.org>
Date: Wed, 01 Jun 2022 04:10:13 +0000
From: patchwork-bot+netdevbpf@...nel.org
To: Pablo Neira Ayuso <pablo@...filter.org>
Cc: netfilter-devel@...r.kernel.org, davem@...emloft.net,
netdev@...r.kernel.org, kuba@...nel.org, pabeni@...hat.com,
edumazet@...gle.com
Subject: Re: [PATCH net 1/5] netfilter: nf_tables: sanitize
nft_set_desc_concat_parse()
Hello:
This series was applied to netdev/net.git (master)
by Pablo Neira Ayuso <pablo@...filter.org>:
On Tue, 31 May 2022 23:58:35 +0200 you wrote:
> Add several sanity checks for nft_set_desc_concat_parse():
>
> - validate desc->field_count not larger than desc->field_len array.
> - field length cannot be larger than desc->field_len (ie. U8_MAX)
> - total length of the concatenation cannot be larger than register array.
>
> Joint work with Florian Westphal.
>
> [...]
Here is the summary with links:
- [net,1/5] netfilter: nf_tables: sanitize nft_set_desc_concat_parse()
https://git.kernel.org/netdev/net/c/fecf31ee395b
- [net,2/5] netfilter: nf_tables: hold mutex on netns pre_exit path
https://git.kernel.org/netdev/net/c/3923b1e44066
- [net,3/5] netfilter: nf_tables: double hook unregistration in netns path
https://git.kernel.org/netdev/net/c/f9a43007d3f7
- [net,4/5] netfilter: flowtable: fix missing FLOWI_FLAG_ANYSRC flag
https://git.kernel.org/netdev/net/c/f1896d45fee9
- [net,5/5] netfilter: flowtable: fix nft_flow_route source address for nat case
https://git.kernel.org/netdev/net/c/97629b237a8c
You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html
Powered by blists - more mailing lists