]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
netfilter: nf_tables: validate family when identifying table via handle
authorPablo Neira Ayuso <pablo@netfilter.org>
Mon, 4 Dec 2023 13:51:48 +0000 (14:51 +0100)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Wed, 13 Dec 2023 17:36:37 +0000 (18:36 +0100)
commit9de311e5d1429b6021f1c8087bba419f3baa1fa5
treeeef286b666d7286b8c7d82023158b68b485210f8
parentcf5f113c41eb2c7dbe19d849a0883f7a429fa54b
netfilter: nf_tables: validate family when identifying table via handle

[ Upstream commit f6e1532a2697b81da00bfb184e99d15e01e9d98c ]

Validate table family when looking up for it via NFTA_TABLE_HANDLE.

Fixes: 3ecbfd65f50e ("netfilter: nf_tables: allocate handle and delete objects via handle")
Reported-by: Xingyuan Mo <hdthky0@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
net/netfilter/nf_tables_api.c