]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
netfilter: nf_tables: validate NFT_SET_ELEM_INTERVAL_END
authorPablo Neira Ayuso <pablo@netfilter.org>
Fri, 6 Dec 2019 20:55:20 +0000 (21:55 +0100)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Sun, 12 Jan 2020 11:17:09 +0000 (12:17 +0100)
commitdc330d942c9f642438cd60101e7a95d529fed5a1
treed721935d8d351b4a01141d0fd96870fb864c5ea8
parent80a035ebefa1f4abef2f9e421793f4b0077d6406
netfilter: nf_tables: validate NFT_SET_ELEM_INTERVAL_END

[ Upstream commit bffc124b6fe37d0ae9b428d104efb426403bb5c9 ]

Only NFTA_SET_ELEM_KEY and NFTA_SET_ELEM_FLAGS make sense for elements
whose NFT_SET_ELEM_INTERVAL_END flag is set on.

Fixes: 96518518cc41 ("netfilter: add nftables")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
net/netfilter/nf_tables_api.c