Pablo Neira Ayuso says: ==================== Netfilter fixes for net 1) Check for interval validity in all concatenation fields in nft_set_pipapo, from Stefano Brivio. 2) Missing preemption disabled in conntrack and flowtable stat updates, from Xin Long. 3) Fix compilation warning when CONFIG_NF_CONNTRACK_MARK=n. Except for 3) which was a bug introduced in a recent fix in 6.1-rc - anything else, broken for several releases. * git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf: netfilter: ctnetlink: fix compilation warning after data race fixes in ct mark netfilter: conntrack: fix using __this_cpu_add in preemptible netfilter: flowtable_offload: fix using __this_cpu_add in preemptible netfilter: nft_set_pipapo: Actually validate intervals in fields after the first one ==================== Link: https://lore.kernel.org/r/20221130121934.1125-1-pablo@netfilter.org Signed-off-by:Jakub Kicinski <kuba@kernel.org>
Showing
- net/netfilter/nf_conntrack_core.c 3 additions, 3 deletionsnet/netfilter/nf_conntrack_core.c
- net/netfilter/nf_conntrack_netlink.c 10 additions, 9 deletionsnet/netfilter/nf_conntrack_netlink.c
- net/netfilter/nf_flow_table_offload.c 3 additions, 3 deletionsnet/netfilter/nf_flow_table_offload.c
- net/netfilter/nft_set_pipapo.c 3 additions, 2 deletionsnet/netfilter/nft_set_pipapo.c
Loading
Please register or sign in to comment