commit | 4e1860a3863707e8177329c006d10f9e37e097a8 | [log] [tgz] |
---|---|---|
author | Pablo Neira Ayuso <pablo@netfilter.org> | Wed Jan 05 16:09:57 2022 +0100 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Thu Jan 06 10:43:23 2022 +0100 |
tree | c79eb1919de9ee6c97544aae1e9e6224f845ed0f | |
parent | 1585f590a2e5dcae5833b05e030c47229299dd09 [diff] |
netfilter: nft_payload: do not update layer 4 checksum when mangling fragments IP fragments do not come with the transport header, hence skip bogus layer 4 checksum updates. Fixes: 1814096980bb ("netfilter: nft_payload: layer 4 checksum adjustment for pseudoheader fields") Reported-and-tested-by: Steffen Weinreich <steve@weinreich.org> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>