]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
netfilter: nf_tables: don't update chain with unset counters
authorPablo Neira Ayuso <pablo@netfilter.org>
Tue, 5 Aug 2014 15:25:59 +0000 (17:25 +0200)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Sun, 5 Oct 2014 20:41:11 +0000 (13:41 -0700)
commite765aed022b94f52e7531d5ee51c98f2c240d129
tree1ac7d2fec68c42cb2af3cf83ea396520cf4e75c5
parent420d3e020dbdc9cb32faffc9307bf85da3e942ec
netfilter: nf_tables: don't update chain with unset counters

commit b88825de8545ad252c31543fef13cadf4de7a2bc upstream.

Fix possible replacement of the per-cpu chain counters by null
pointer when updating an existing chain in the commit path.

Reported-by: Matteo Croce <technoboy85@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
net/netfilter/nf_tables_api.c