]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
netfilter: nf_tables: Reintroduce shortened deletion notifications
authorPhil Sutter <phil@nwl.cc>
Fri, 13 Jun 2025 13:37:03 +0000 (15:37 +0200)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Fri, 19 Sep 2025 14:35:49 +0000 (16:35 +0200)
commitdbe85d3115c7e6b5124c8b028f4f602856ea51dd
treedcaf22bc9d191bb01a13d772327a7634cb433d44
parent9f1cc747c9ba867e9347a80fc43a92af31d06245
netfilter: nf_tables: Reintroduce shortened deletion notifications

[ Upstream commit a1050dd071682d2c9d8d6d5c96119f8f401b62f0 ]

Restore commit 28339b21a365 ("netfilter: nf_tables: do not send complete
notification of deletions") and fix it:

- Avoid upfront modification of 'event' variable so the conditionals
  become effective.
- Always include NFTA_OBJ_TYPE attribute in object notifications, user
  space requires it for proper deserialisation.
- Catch DESTROY events, too.

Signed-off-by: Phil Sutter <phil@nwl.cc>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Stable-dep-of: b2f742c846ca ("netfilter: nf_tables: restart set lookup on base_seq change")
Signed-off-by: Sasha Levin <sashal@kernel.org>
net/netfilter/nf_tables_api.c