commit | d92191aa84e5f187d543867c3d54b38f294833fa | [log] [tgz] |
---|---|---|
author | Pablo Neira Ayuso <pablo@netfilter.org> | Wed Mar 21 13:55:42 2018 +0100 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Thu Mar 22 12:57:07 2018 +0100 |
tree | 1f3f76eb4fd2c70a38b0c2f17fc7ef64ee574578 | |
parent | aebfa52a925d701114afd6af0def35bab16d4f47 [diff] |
netfilter: nf_tables: cache device name in flowtable object Devices going away have to grab the nfnl_lock from the netdev event path to avoid races with control plane updates. However, netlink dumps in netfilter do not hold nfnl_lock mutex. Cache the device name into the objects to avoid an use-after-free situation for a device that is going away. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>