summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* ipvs: Fix use-after-free in ip_vs_inYueHaibing2019-06-221-1/+1
* netfilter: nf_queue: fix reinject verdict handlingJagdish Motwani2019-06-221-0/+1
* netfilter: nf_flow_table: fix netdev refcnt leakTaehee Yoo2019-06-151-0/+1
* netfilter: nf_flow_table: check ttl value in flow offload data pathTaehee Yoo2019-06-151-0/+6
* netfilter: nf_tables: fix base chain stat rcu_dereference usageFlorian Westphal2019-06-151-2/+7
* netfilter: nf_conntrack_h323: restore boundary check correctnessJakub Jankowski2019-06-151-1/+1
* netfilter: nf_flow_table: fix missing error check for rhashtable_insert_fastTaehee Yoo2019-06-151-7/+18
* jump_label: move 'asm goto' support test to KconfigMasahiro Yamada2019-06-041-3/+3
* netfilter: nf_tables: add missing ->release_ops() in error path of newrule()Taehee Yoo2019-05-161-1/+4
* netfilter: nf_tables: use-after-free in dynamic operationsPablo Neira Ayuso2019-05-161-1/+3
* netfilter: fix nf_l4proto_log_invalid to log invalid packetsAndrei Vagin2019-05-161-1/+1
* netfilter: nf_tables: prevent shift wrap in nft_chain_parse_hook()Dan Carpenter2019-05-161-1/+1
* netfilter: ctnetlink: don't use conntrack/expect object addresses as idFlorian Westphal2019-05-162-5/+64
* ipvs: do not schedule icmp errors from tunnelsJulian Anastasov2019-05-161-1/+1
* netfilter: fix NETFILTER_XT_TARGET_TEE dependenciesArnd Bergmann2019-05-041-0/+1
* netfilter: nft_set_rbtree: check for inactive element after flag mismatchPablo Neira Ayuso2019-05-041-4/+3Star
* ipvs: fix warning on unused variableAndrea Claudi2019-05-021-1/+2
* netfilter: nf_tables: bogus EBUSY in helper removal from transactionPablo Neira Ayuso2019-05-021-3/+16
* netfilter: nf_tables: bogus EBUSY when deleting set after flushPablo Neira Ayuso2019-05-024-13/+54
* netfilter: nf_tables: fix set double-free in abort pathPablo Neira Ayuso2019-05-021-6/+11
* netfilter: nft_compat: use .release_ops and remove list of extensionPablo Neira Ayuso2019-05-022-227/+61Star
* netfilter: nft_compat: don't use refcount_inc on newly allocated entryFlorian Westphal2019-05-021-39/+23Star
* netfilter: nf_tables: unbind set in rule from commit pathPablo Neira Ayuso2019-05-026-79/+72Star
* netfilter: nf_tables: warn when expr implements only one of activate/deactivateFlorian Westphal2019-05-021-0/+19
* netfilter: nft_compat: destroy function must not have side effectsFlorian Westphal2019-05-021-1/+47
* netfilter: nf_tables: split set destruction in deactivate and destroy phaseFlorian Westphal2019-05-024-14/+83
* netfilter: nft_compat: make lists per netnsFlorian Westphal2019-05-021-40/+89
* netfilter: nft_compat: use refcnt_t type for nft_xt reference countFlorian Westphal2019-05-021-8/+8
* netfilter: nf_flow_table: remove flowtable hook flush routine in netns exit r...Taehee Yoo2019-04-201-3/+0Star
* netfilter: xt_cgroup: shrink size of v2 pathPablo Neira Ayuso2019-04-201-0/+72
* netfilter: nfnetlink_cttimeout: fetch timeouts for udplite and gre, tooFlorian Westphal2019-04-172-14/+15
* netfilter: nfnetlink_cttimeout: pass default timeout policy to obj_to_nlattrPablo Neira Ayuso2019-04-171-6/+40
* netfilter: physdev: relax br_netfilter dependencyFlorian Westphal2019-04-051-2/+7
* netfilter: conntrack: fix cloned unconfirmed skb->_nfct race in __nf_conntrac...Chieh-Min Wang2019-04-051-3/+11
* netfilter: conntrack: tcp: only close if RST matches exact sequenceFlorian Westphal2019-04-051-10/+40
* netfilter: nf_tables: check the result of dereferencing base_chain->statsLi RongQing2019-04-051-6/+8
* ipvs: fix dependency on nf_defrag_ipv6Andrea Claudi2019-03-233-6/+15
* netfilter: compat: initialize all fields in xt_initFrancesco Ruggeri2019-03-231-1/+1
* netfilter: xt_TEE: add missing code to get interface index in checkentry.Taehee Yoo2019-03-131-0/+7
* netfilter: xt_TEE: fix wrong interface selectionTaehee Yoo2019-03-131-17/+52
* netfilter: nf_nat: skip nat clash resolution for same-origin entriesMartynas Pumputis2019-03-131-0/+16
* ipvs: Fix signed integer overflow when setsockopt timeoutZhangXiaoxu2019-03-131-0/+12
* netfilter: nfnetlink_osf: add missing fmatch checkFernando Fernandez Mancera2019-02-271-0/+4
* netfilter: nft_compat: use-after-free when deleting targetsPablo Neira Ayuso2019-02-271-1/+2
* netfilter: nf_tables: fix flush after rule deletion in the same batchPablo Neira Ayuso2019-02-271-0/+3
* netfilter: nft_flow_offload: fix checking method of conntrack helperHenry Yen2019-02-271-1/+4
* netfilter: nft_flow_offload: fix interaction with vrf slave devicewenxu2019-02-272-4/+5
* netfilter: nft_flow_offload: Fix reverse route lookupwenxu2019-02-271-2/+2
* netfilter: nf_tables: fix leaking object reference countTaehee Yoo2019-02-271-0/+2
* netfilter: ipset: Allow matching on destination MAC address for mac and ipmac...Stefano Brivio2019-01-263-16/+20