]> git.proxmox.com Git - mirror_ubuntu-kernels.git/commit
netfilter: nft_dynset: disallow object maps
authorPablo Neira Ayuso <pablo@netfilter.org>
Tue, 15 Aug 2023 13:39:02 +0000 (15:39 +0200)
committerFlorian Westphal <fw@strlen.de>
Tue, 15 Aug 2023 22:05:15 +0000 (00:05 +0200)
commit23185c6aed1ffb8fc44087880ba2767aba493779
tree33b6ba6edb8743db8f9f1a5fb7d5265ec295dfd6
parent02c6c24402bf1c1e986899c14ba22a10b510916b
netfilter: nft_dynset: disallow object maps

Do not allow to insert elements from datapath to objects maps.

Fixes: 8aeff920dcc9 ("netfilter: nf_tables: add stateful object reference to set elements")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Florian Westphal <fw@strlen.de>
net/netfilter/nft_dynset.c