Re: [PATCH net 1/6] netfilter: nf_tables: report use refcount overflow
From: patchwork-bot+netdevbpf@kernel.org
Date: 2023-07-06 09:20:22
Also in:
netfilter-devel
Hello: This series was applied to netdev/net.git (main) by Pablo Neira Ayuso [off-list ref]: On Thu, 6 Jul 2023 01:04:01 +0200 you wrote:
Overflow use refcount checks are not complete. Add helper function to deal with object reference counter tracking. Report -EMFILE in case UINT_MAX is reached. nft_use_dec() splats in case that reference counter underflows, which should not ever happen. [...]
Here is the summary with links:
- [net,1/6] netfilter: nf_tables: report use refcount overflow
https://git.kernel.org/netdev/net/c/1689f25924ad
- [net,2/6] netfilter: conntrack: gre: don't set assured flag for clash entries
https://git.kernel.org/netdev/net/c/8a9dc07ba924
- [net,3/6] netfilter: conntrack: Avoid nf_ct_helper_hash uses after free
https://git.kernel.org/netdev/net/c/6eef7a2b9338
- [net,4/6] netfilter: conntrack: don't fold port numbers into addresses before hashing
https://git.kernel.org/netdev/net/c/eaf9e7192ec9
- [net,5/6] netfilter: nf_tables: do not ignore genmask when looking up chain by id
https://git.kernel.org/netdev/net/c/515ad530795c
- [net,6/6] netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
https://git.kernel.org/netdev/net/c/caf3ef7468f7
You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html