summaryrefslogtreecommitdiff
path: root/ipc
diff options
context:
space:
mode:
authorPablo Neira Ayuso <pablo@netfilter.org>2017-05-15 11:17:29 +0100
committerPablo Neira Ayuso <pablo@netfilter.org>2017-05-15 12:51:40 +0200
commit71df14b0ce094be46d105b5a3ededd83b8e779a0 (patch)
treeb0d32758237566a91e43001780641c7a6971d2dc /ipc
parentfa803605eef39372e53d7813002d73a3fcf10c88 (diff)
netfilter: nf_tables: missing sanitization in data from userspace
Do not assume userspace always sends us NFT_DATA_VALUE for bitwise and cmp expressions. Although NFT_DATA_VERDICT does not make any sense, it is still possible to handcraft a netlink message using this incorrect data type. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'ipc')
0 files changed, 0 insertions, 0 deletions