index
:
kernel/git/torvalds/linux.git
master
Linux kernel source tree
Linus Torvalds
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
net
/
netfilter
/
nf_tables_api.c
Age
Commit message (
Expand
)
Author
Files
Lines
2024-04-18
netfilter: nf_tables: fix memleak in map from abort path
Pablo Neira Ayuso
1
-2
/
+14
2024-04-17
netfilter: nf_tables: restore set elements when delete set fails
Pablo Neira Ayuso
1
-4
/
+40
2024-04-11
netfilter: nft_set_pipapo: walk over current view on netlink dump
Pablo Neira Ayuso
1
-0
/
+6
2024-04-11
netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
Ziyang Xuan
1
-2
/
+6
2024-04-11
netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
Ziyang Xuan
1
-2
/
+6
2024-04-04
netfilter: nf_tables: discard table flag update with pending basechain deletion
Pablo Neira Ayuso
1
-4
/
+5
2024-04-04
netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()
Ziyang Xuan
1
-2
/
+7
2024-04-04
netfilter: nf_tables: reject new basechain after table flag update
Pablo Neira Ayuso
1
-0
/
+3
2024-04-04
netfilter: nf_tables: flush pending destroy work before exit_net release
Pablo Neira Ayuso
1
-0
/
+1
2024-04-04
netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
Pablo Neira Ayuso
1
-5
/
+8
2024-04-04
netfilter: nf_tables: release batch on table validation from abort path
Pablo Neira Ayuso
1
-5
/
+10
2024-03-28
netfilter: nf_tables: skip netdev hook unregistration if table is dormant
Pablo Neira Ayuso
1
-6
/
+10
2024-03-28
netfilter: nf_tables: reject table flag and netdev basechain updates
Pablo Neira Ayuso
1
-1
/
+30
2024-03-28
netfilter: nf_tables: reject destroy command to remove basechain hooks
Pablo Neira Ayuso
1
-1
/
+2
2024-03-21
netfilter: nf_tables: Fix a memory leak in nf_tables_updchain
Quan Tian
1
-13
/
+14
2024-03-21
netfilter: nf_tables: do not compare internal table flags on updates
Pablo Neira Ayuso
1
-1
/
+1
2024-03-07
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-0
/
+7
2024-03-07
netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
Pablo Neira Ayuso
1
-0
/
+1
2024-03-07
netfilter: nf_tables: reject constant set with timeout
Pablo Neira Ayuso
1
-0
/
+3
2024-03-07
netfilter: nf_tables: disallow anonymous set with timeout flag
Pablo Neira Ayuso
1
-0
/
+3
2024-02-22
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-39
/
+42
2024-02-22
netfilter: nf_tables: use kzalloc for hook allocation
Florian Westphal
1
-1
/
+1
2024-02-22
netfilter: nf_tables: register hooks last when adding new chain/flowtable
Pablo Neira Ayuso
1
-38
/
+40
2024-02-22
netfilter: nf_tables: set dormant flag on hook register failure
Florian Westphal
1
-0
/
+1
2024-02-08
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+3
2024-02-08
netfilter: nf_tables: use timestamp to check for set element timeout
Pablo Neira Ayuso
1
-1
/
+3
2024-02-01
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-5
/
+9
2024-01-31
netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV
Pablo Neira Ayuso
1
-5
/
+9
2024-01-29
netfilter: nf_tables: pass flags to set backend selection routine
Pablo Neira Ayuso
1
-7
/
+2
2024-01-29
netfilter: nf_tables: Implement table adoption support
Phil Sutter
1
-3
/
+16
2024-01-29
netfilter: nf_tables: Introduce NFT_TABLE_F_PERSIST
Phil Sutter
1
-0
/
+7
2024-01-24
netfilter: nf_tables: reject QUEUE/DROP verdict parameters
Florian Westphal
1
-10
/
+6
2024-01-24
netfilter: nf_tables: restrict anonymous set and map names to 16 bytes
Florian Westphal
1
-0
/
+4
2024-01-17
netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description
Pablo Neira Ayuso
1
-1
/
+5
2024-01-17
netfilter: nf_tables: skip dead set elements in netlink dump
Pablo Neira Ayuso
1
-1
/
+1
2024-01-17
netfilter: nf_tables: do not allow mismatch field size and set key length
Pablo Neira Ayuso
1
-1
/
+5
2024-01-17
netfilter: nf_tables: check if catch-all set element is active in next genera...
Pablo Neira Ayuso
1
-1
/
+1
2024-01-17
netfilter: nf_tables: bail out if stateful expression provides no .clone
Pablo Neira Ayuso
1
-8
/
+7
2024-01-17
netfilter: nf_tables: validate .maxattr at expression registration
Pablo Neira Ayuso
1
-0
/
+3
2024-01-17
netfilter: nf_tables: reject invalid set policy
Pablo Neira Ayuso
1
-1
/
+9
2024-01-04
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+1
2023-12-22
netfilter: nf_tables: validate chain type update if available
Pablo Neira Ayuso
1
-1
/
+10
2023-12-22
netfilter: nf_tables: mark newset as dead on transaction abort
Florian Westphal
1
-0
/
+1
2023-12-22
netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests
Phil Sutter
1
-17
/
+81
2023-12-22
netfilter: nf_tables: Introduce nft_set_dump_ctx_init()
Phil Sutter
1
-16
/
+33
2023-12-22
netfilter: nf_tables: Pass const set to nft_get_set_elem
Phil Sutter
1
-3
/
+3
2023-12-20
netfilter: nf_tables: skip set commit for deleted/destroyed sets
Pablo Neira Ayuso
1
-1
/
+1
2023-12-06
netfilter: nf_tables: validate family when identifying table via handle
Pablo Neira Ayuso
1
-2
/
+3
2023-11-14
netfilter: nf_tables: split async and sync catchall in two functions
Pablo Neira Ayuso
1
-25
/
+30
2023-11-14
netfilter: nf_tables: bogus ENOENT when destroying element which does not exist
Pablo Neira Ayuso
1
-2
/
+3
2023-11-08
netfilter: nf_tables: remove catchall element in GC sync path
Pablo Neira Ayuso
1
-5
/
+17
2023-11-08
netfilter: add missing module descriptions
Florian Westphal
1
-0
/
+1
2023-10-24
netfilter: nf_tables: Carry reset boolean in nft_set_dump_ctx
Phil Sutter
1
-10
/
+8
2023-10-24
netfilter: nf_tables: set->ops->insert returns opaque set element in case of ...
Pablo Neira Ayuso
1
-7
/
+10
2023-10-24
netfilter: nf_tables: shrink memory consumption of set elements
Pablo Neira Ayuso
1
-91
/
+75
2023-10-24
netfilter: nf_tables: expose opaque set element as struct nft_elem_priv
Pablo Neira Ayuso
1
-12
/
+15
2023-10-24
netfilter: nf_tables: set backend .flush always succeeds
Pablo Neira Ayuso
1
-8
/
+1
2023-10-24
netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctx
Phil Sutter
1
-6
/
+6
2023-10-24
netfilter: nf_tables: nft_obj_filter fits into cb->ctx
Phil Sutter
1
-11
/
+5
2023-10-24
netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctx
Phil Sutter
1
-4
/
+5
2023-10-24
netfilter: nf_tables: A better name for nft_obj_filter
Phil Sutter
1
-16
/
+16
2023-10-24
netfilter: nf_tables: Unconditionally allocate nft_obj_filter
Phil Sutter
1
-21
/
+15
2023-10-24
netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj
Phil Sutter
1
-3
/
+0
2023-10-24
netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
Phil Sutter
1
-13
/
+64
2023-10-24
netfilter: nf_tables: Introduce nf_tables_getrule_single()
Phil Sutter
1
-31
/
+43
2023-10-24
netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
Phil Sutter
1
-4
/
+15
2023-10-19
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-36
/
+34
2023-10-18
netfilter: nf_tables: revert do not remove elements if set backend implements...
Pablo Neira Ayuso
1
-4
/
+1
2023-10-18
netfilter: nf_tables: audit log object reset once per table
Phil Sutter
1
-22
/
+28
2023-10-12
nf_tables: fix NULL pointer dereference in nft_expr_inner_parse()
Xingyuan Mo
1
-1
/
+1
2023-10-12
netfilter: nf_tables: do not refresh timeout when resetting element
Pablo Neira Ayuso
1
-13
/
+5
2023-10-12
netfilter: nf_tables: do not remove elements if set backend implements .abort
Pablo Neira Ayuso
1
-1
/
+4
2023-10-10
netfilter: nf_tables: Don't allocate nft_rule_dump_ctx
Phil Sutter
1
-13
/
+6
2023-10-10
netfilter: nf_tables: Carry s_idx in nft_rule_dump_ctx
Phil Sutter
1
-4
/
+4
2023-10-10
netfilter: nf_tables: Carry reset flag in nft_rule_dump_ctx
Phil Sutter
1
-10
/
+9
2023-10-10
netfilter: nf_tables: Drop pointless memset when dumping rules
Phil Sutter
1
-4
/
+0
2023-10-10
netfilter: nf_tables: Always allocate nft_rule_dump_ctx
Phil Sutter
1
-27
/
+21
2023-10-05
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-16
/
+28
2023-10-04
netfilter: nf_tables: Deduplicate nft_register_obj audit logs
Phil Sutter
1
-16
/
+28
2023-09-28
netfilter: nf_tables: Utilize NLA_POLICY_NESTED_ARRAY
Phil Sutter
1
-9
/
+9
2023-09-28
netfilter: nf_tables: missing extended netlink error in lookup functions
Pablo Neira Ayuso
1
-6
/
+19
2023-09-20
netfilter: nf_tables: fix memleak when more than 255 elements expired
Florian Westphal
1
-2
/
+8
2023-09-20
netfilter: nf_tables: disable toggling dormant table state more than once
Florian Westphal
1
-0
/
+4
2023-09-13
netfilter: nf_tables: Fix entries val in rule reset audit log
Phil Sutter
1
-6
/
+10
2023-09-11
netfilter: nf_tables: disallow element removal on anonymous sets
Pablo Neira Ayuso
1
-4
/
+5
2023-09-08
netfilter: nft_set_pipapo: call nft_trans_gc_queue_sync() in catchall GC
Pablo Neira Ayuso
1
-3
/
+19
2023-09-08
netfilter: nf_tables: disallow rule removal from chain binding
Pablo Neira Ayuso
1
-5
/
+13
2023-09-06
netfilter: nf_tables: Unbreak audit log reset
Pablo Neira Ayuso
1
-5
/
+6
2023-08-31
netfilter: nf_tables: Audit log rule reset
Phil Sutter
1
-0
/
+18
2023-08-31
netfilter: nf_tables: Audit log setelem reset
Phil Sutter
1
-3
/
+28
2023-08-24
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-8
/
+15
2023-08-23
netfilter: nf_tables: use correct lock to protect gc_list
Pablo Neira Ayuso
1
-2
/
+2
2023-08-23
netfilter: nf_tables: GC transaction race with abort path
Pablo Neira Ayuso
1
-1
/
+5
2023-08-23
netfilter: nf_tables: flush pending destroy work before netlink notifier
Pablo Neira Ayuso
1
-1
/
+1
2023-08-23
netfilter: nf_tables: validate all pending tables
Florian Westphal
1
-4
/
+7
2023-08-22
netfilter: nf_tables: allow loop termination for pending fatal signal
Florian Westphal
1
-0
/
+6
2023-08-16
netfilter: nf_tables: GC transaction race with netns dismantle
Pablo Neira Ayuso
1
-1
/
+6
2023-08-16
netfilter: nf_tables: fix GC transaction races with netns and netlink event e...
Pablo Neira Ayuso
1
-4
/
+32
2023-08-16
netfilter: nf_tables: deactivate catchall elements in next generation
Florian Westphal
1
-0
/
+1
2023-08-10
netfilter: nf_tables: remove busy mark and gc batch API
Pablo Neira Ayuso
1
-47
/
+1
2023-08-10
netfilter: nf_tables: adapt set backend to use GC transaction API
Pablo Neira Ayuso
1
-5
/
+2
2023-08-10
netfilter: nf_tables: GC transaction API to avoid race with control plane
Pablo Neira Ayuso
1
-11
/
+237
2023-08-09
netfilter: nf_tables: don't skip expired elements during walk
Florian Westphal
1
-0
/
+4
2023-07-26
netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHA...
Pablo Neira Ayuso
1
-2
/
+3
2023-07-20
netfilter: nf_tables: skip bound chain on rule flush
Pablo Neira Ayuso
1
-0
/
+2
2023-07-20
netfilter: nf_tables: skip bound chain in netns release path
Pablo Neira Ayuso
1
-0
/
+3
2023-07-20
netfilter: nf_tables: can't schedule in nft_chain_validate
Florian Westphal
1
-2
/
+2
2023-07-20
netfilter: nf_tables: fix spurious set element insertion failure
Florian Westphal
1
-0
/
+3
2023-07-05
netfilter: nf_tables: do not ignore genmask when looking up chain by id
Thadeu Lima de Souza Cascardo
1
-4
/
+7
2023-07-05
netfilter: nf_tables: report use refcount overflow
Pablo Neira Ayuso
1
-62
/
+101
2023-06-27
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+5
2023-06-26
Merge tag 'nf-next-23-06-26' of git://git.kernel.org/pub/scm/linux/kernel/git...
Jakub Kicinski
1
-20
/
+52
2023-06-26
netfilter: nf_tables: fix underflow in chain reference counter
Pablo Neira Ayuso
1
-1
/
+3
2023-06-26
netfilter: nf_tables: unbind non-anonymous set if rule construction fails
Pablo Neira Ayuso
1
-0
/
+2
2023-06-26
netfilter: nf_tables: Introduce NFT_MSG_GETSETELEM_RESET
Phil Sutter
1
-20
/
+48
2023-06-26
netfilter: nf_tables: permit update of set size
Florian Westphal
1
-0
/
+4
2023-06-22
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-71
/
+295
2023-06-20
netfilter: nf_tables: Fix for deleting base chains with payload
Phil Sutter
1
-7
/
+9
2023-06-20
netfilter: nf_tables: drop module reference after updating chain
Pablo Neira Ayuso
1
-0
/
+2
2023-06-20
netfilter: nf_tables: disallow timeout for anonymous sets
Pablo Neira Ayuso
1
-0
/
+7
2023-06-20
netfilter: nf_tables: disallow updates of anonymous sets
Pablo Neira Ayuso
1
-0
/
+3
2023-06-20
netfilter: nf_tables: reject unbound chain set before commit phase
Pablo Neira Ayuso
1
-0
/
+13
2023-06-20
netfilter: nf_tables: reject unbound anonymous set before commit phase
Pablo Neira Ayuso
1
-3
/
+32
2023-06-20
netfilter: nf_tables: disallow element updates of bound anonymous sets
Pablo Neira Ayuso
1
-2
/
+5
2023-06-20
netfilter: nf_tables: fix underflow in object reference counter
Pablo Neira Ayuso
1
-8
/
+5
2023-06-20
netfilter: nf_tables: drop map element references from preparation phase
Pablo Neira Ayuso
1
-17
/
+130
2023-06-20
netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain
Pablo Neira Ayuso
1
-7
/
+38
2023-06-20
netfilter: nf_tables: fix chain binding transaction logic
Pablo Neira Ayuso
1
-31
/
+55
2023-06-15
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+58
2023-06-08
netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE
Pablo Neira Ayuso
1
-1
/
+2
2023-06-08
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+3
2023-06-08
netfilter: nf_tables: integrate pipapo into commit protocol
Pablo Neira Ayuso
1
-0
/
+56
2023-06-07
netfilter: nf_tables: out-of-bound check in chain blob
Pablo Neira Ayuso
1
-1
/
+1
2023-06-07
netfilter: nf_tables: Add null check for nla_nest_start_noflag() in nft_dump_...
Gavrilov Ilia
1
-0
/
+2
2023-05-18
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-3
/
+1
2023-05-18
netfilter: nf_tables: always increment set element count
Florian Westphal
1
-4
/
+7
2023-05-17
netfilter: nf_tables: fix nft_trans type confusion
Florian Westphal
1
-3
/
+1
2023-05-03
netfilter: nf_tables: deactivate anonymous set from preparation phase
Pablo Neira Ayuso
1
-0
/
+12
2023-05-03
netfilter: nf_tables: hit ENOENT on unexisting chain/flowtable update with mi...
Pablo Neira Ayuso
1
-12
/
+17
2023-04-22
netfilter: nf_tables: allow to create netdev chain without device
Pablo Neira Ayuso
1
-12
/
+11
2023-04-22
netfilter: nf_tables: support for deleting devices in an existing netdev chain
Pablo Neira Ayuso
1
-11
/
+88
2023-04-22
netfilter: nf_tables: support for adding new devices to an existing netdev chain
Pablo Neira Ayuso
1
-81
/
+136
2023-04-22
netfilter: nf_tables: rename function to destroy hook list
Pablo Neira Ayuso
1
-4
/
+4
2023-04-22
netfilter: nf_tables: do not send complete notification of deletions
Pablo Neira Ayuso
1
-19
/
+51
2023-04-22
netfilter: nf_tables: extended netlink error reporting for netdevice
Pablo Neira Ayuso
1
-14
/
+24
2023-04-22
netfilter: nf_tables: make validation state per table
Florian Westphal
1
-20
/
+18
2023-04-22
netfilter: nf_tables: don't write table validation state without mutex
Florian Westphal
1
-6
/
+2
2023-04-22
netfilter: nf_tables: don't store chain address on jump
Florian Westphal
1
-7
/
+0
2023-04-22
netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
Florian Westphal
1
-28
/
+27
2023-04-18
netfilter: nf_tables: tighten netlink attribute requirements for catch-all el...
Pablo Neira Ayuso
1
-1
/
+2
2023-04-18
netfilter: nf_tables: validate catch-all set elements
Pablo Neira Ayuso
1
-6
/
+58
2023-04-06
netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
Chen Aotian
1
-1
/
+1
2023-02-22
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf
Jakub Kicinski
1
-1
/
+1
2023-02-09
netfilter: nf_tables: allow to fetch set elements when table has an owner
Pablo Neira Ayuso
1
-1
/
+1
2023-02-01
netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
Yang Yingliang
1
-1
/
+1
2023-02-01
netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
Alok Tiwari
1
-0
/
+3
2023-01-18
netfilter: nf_tables: add support to destroy operation
Fernando Fernandez Mancera
1
-8
/
+103
2022-12-22
netfilter: nf_tables: honor set timeout and garbage collection updates
Pablo Neira Ayuso
1
-18
/
+45
2022-12-21
netfilter: nf_tables: perform type checking for existing sets
Pablo Neira Ayuso
1
-1
/
+35
2022-12-21
netfilter: nf_tables: add function to create set stateful expressions
Pablo Neira Ayuso
1
-38
/
+68
2022-12-21
netfilter: nf_tables: consolidate set description
Pablo Neira Ayuso
1
-30
/
+28
2022-12-12
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf-next
Jakub Kicinski
1
-2
/
+2
2022-11-29
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-2
/
+4
2022-11-22
netfilter: nft_inner: fix IS_ERR() vs NULL check
Dan Carpenter
1
-2
/
+2
2022-11-18
netfilter: nf_tables: do not set up extensions for end interval
Pablo Neira Ayuso
1
-2
/
+4
2022-11-15
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf-next
Jakub Kicinski
1
-16
/
+33
2022-11-15
netfilter: nf_tables: Introduce NFT_MSG_GETRULE_RESET
Phil Sutter
1
-16
/
+33
2022-11-15
netfilter: nf_tables: Extend nft_expr_ops::dump callback parameters
Phil Sutter
1
-1
/
+1
2022-11-10
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-1
/
+2
2022-11-08
netfilter: Cleanup nft_net->module_list from nf_tables_exit_net()
Shigeru Yoshida
1
-1
/
+2
2022-11-03
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-3
/
+5
2022-11-01
netfilter: nf_tables: release flow rule object from commit path
Pablo Neira Ayuso
1
-3
/
+3
2022-11-01
netfilter: nf_tables: netlink notifier might race to release objects
Pablo Neira Ayuso
1
-0
/
+2
2022-10-28
net: Remove the obsolte u64_stats_fetch_*_irq() users (net).
Thomas Gleixner
1
-2
/
+2
2022-10-25
netfilter: nft_inner: support for inner tunnel header matching
Pablo Neira Ayuso
1
-0
/
+37
2022-10-19
netfilter: nf_tables: relax NFTA_SET_ELEM_KEY_END set flags requirements
Pablo Neira Ayuso
1
-2
/
+3
2022-09-22
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
1
-4
/
+4
2022-09-20
netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain()
Tetsuo Handa
1
-0
/
+1
2022-09-20
netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain()
Tetsuo Handa
1
-4
/
+3
2022-09-09
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf-next
David S. Miller
1
-1
/
+1
2022-09-07
netfilter: move from strlcpy with unused retval to strscpy
Wolfram Sang
1
-1
/
+1
2022-08-31
netfilter: nf_tables: clean up hook list when offload flags check fails
Pablo Neira Ayuso
1
-1
/
+3
2022-08-24
netfilter: nf_tables: disallow binding to already bound chain
Pablo Neira Ayuso
1
-0
/
+2
2022-08-24
netfilter: nf_tables: do not leave chain stats enabled on error
Pablo Neira Ayuso
1
-2
/
+4
2022-08-24
netfilter: nf_tables: make table handle allocation per-netns friendly
Pablo Neira Ayuso
1
-2
/
+1
2022-08-24
netfilter: nf_tables: disallow updates of implicit chain
Pablo Neira Ayuso
1
-0
/
+3
2022-08-15
netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified
Pablo Neira Ayuso
1
-0
/
+5
2022-08-15
netfilter: nf_tables: disallow NFT_SET_ELEM_CATCHALL and NFT_SET_ELEM_INTERVA...
Pablo Neira Ayuso
1
-0
/
+3
2022-08-15
netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags
Pablo Neira Ayuso
1
-0
/
+24
2022-08-12
netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag
Pablo Neira Ayuso
1
-4
/
+9
2022-08-11
netfilter: nf_tables: really skip inactive sets when allocating name
Pablo Neira Ayuso
1
-1
/
+1
2022-08-11
netfilter: nf_tables: fix scheduling-while-atomic splat
Florian Westphal
1
-4
/
+0
2022-08-10
netfilter: nf_tables: possible module reference underflow in error path
Pablo Neira Ayuso
1
-1
/
+1
2022-08-10
netfilter: nf_tables: disallow NFTA_SET_ELEM_KEY_END with NFT_SET_ELEM_INTERV...
Pablo Neira Ayuso
1
-0
/
+1
2022-08-10
netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id a...
Pablo Neira Ayuso
1
-7
/
+13
2022-08-09
netfilter: nf_tables: fix null deref due to zeroed list head
Florian Westphal
1
-0
/
+1
2022-08-09
netfilter: nf_tables: disallow jump to implicit chain from set element
Pablo Neira Ayuso
1
-0
/
+4
2022-08-09
netfilter: nf_tables: upfront validation of data via nft_data_init()
Pablo Neira Ayuso
1
-38
/
+40
2022-08-09
netfilter: nf_tables: do not allow RULE_ID to refer to another chain
Thadeu Lima de Souza Cascardo
1
-2
/
+5
2022-08-09
netfilter: nf_tables: do not allow CHAIN_ID to refer to another table
Thadeu Lima de Souza Cascardo
1
-2
/
+4
[next]