]> git.itanic.dy.fi Git - linux-stable/commit
netfilter: nf_tables: stricter validation of element data
authorPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 02:16:30 +0000 (04:16 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Sat, 2 Jul 2022 19:04:10 +0000 (21:04 +0200)
commit7e6bc1f6cabcd30aba0b11219d8e01b952eacbb6
treea4418248c8ef89042ae48ab8e2cb11da4f59da2c
parentf8ebb3ac881b17712e1d5967c97ab1806b16d3d6
netfilter: nf_tables: stricter validation of element data

Make sure element data type and length do not mismatch the one specified
by the set declaration.

Fixes: 7d7402642eaf ("netfilter: nf_tables: variable sized set element keys / data")
Reported-by: Hugues ANGUELKOV <hanguelkov@randorisec.fr>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nf_tables_api.c