]> git.itanic.dy.fi Git - linux-stable/commit
netfilter: nf_tables: Fix a memory leak in nf_tables_updchain
authorQuan Tian <tianquan23@gmail.com>
Wed, 6 Mar 2024 17:24:02 +0000 (01:24 +0800)
committerPablo Neira Ayuso <pablo@netfilter.org>
Thu, 21 Mar 2024 11:12:06 +0000 (12:12 +0100)
commit7eaf837a4eb5f74561e2486972e7f5184b613f6e
tree1ff3a636002bce1d85f2d2ac1baa028926c9447f
parent4a0e7f2decbf9bd72461226f1f5f7dcc4b08f139
netfilter: nf_tables: Fix a memory leak in nf_tables_updchain

If nft_netdev_register_hooks() fails, the memory associated with
nft_stats is not freed, causing a memory leak.

This patch fixes it by moving nft_stats_alloc() down after
nft_netdev_register_hooks() succeeds.

Fixes: b9703ed44ffb ("netfilter: nf_tables: support for adding new devices to an existing netdev chain")
Signed-off-by: Quan Tian <tianquan23@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nf_tables_api.c