commit | 33cc3c0cfa64c86b6c4bbee86997aea638534931 | [log] [tgz] |
---|---|---|
author | Taehee Yoo <ap420073@gmail.com> | Tue Apr 30 01:55:54 2019 +0900 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Tue Apr 30 13:56:19 2019 +0200 |
tree | 8bfaf82f1fc93007863fb85b1ae2146600357497 | |
parent | 26a302afbe328ecb7507cae2035d938e6635131b [diff] |
netfilter: nf_flow_table: check ttl value in flow offload data path nf_flow_offload_ip_hook() and nf_flow_offload_ipv6_hook() do not check ttl value. So, ttl value overflow may occur. Fixes: 97add9f0d66d ("netfilter: flow table support for IPv4") Fixes: 0995210753a2 ("netfilter: flow table support for IPv6") Signed-off-by: Taehee Yoo <ap420073@gmail.com> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>