diff options
author | Pablo Neira Ayuso <pablo@netfilter.org> | 2016-10-13 08:42:17 +0200 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2016-10-17 18:57:02 +0200 |
commit | ccca6607c545534e5b74ef04e0f2f6ba11344be4 (patch) | |
tree | 5288ff52b3888084f4462615a842e76c0d2302b3 /net/ipx | |
parent | netfilter: nft_exthdr: fix error handling in nft_exthdr_init() (diff) | |
download | linux-ccca6607c545534e5b74ef04e0f2f6ba11344be4.tar.xz linux-ccca6607c545534e5b74ef04e0f2f6ba11344be4.zip |
netfilter: nft_range: validate operation netlink attribute
Use nft_parse_u32_check() to make sure we don't get a value over the
unsigned 8-bit integer. Moreover, make sure this value doesn't go over
the two supported range comparison modes.
Fixes: 9286c2eb1fda ("netfilter: nft_range: validate operation netlink attribute")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'net/ipx')
0 files changed, 0 insertions, 0 deletions