summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* net/sched: act_ct: Fix flow table lookup failure with no originating ifindexPaul Blakey2022-03-011-1/+5
* netfilter: nf_queue: handle socket prefetchFlorian Westphal2022-03-011-0/+12
* netfilter: nf_queue: fix possible use-after-freeFlorian Westphal2022-03-012-7/+18
* netfilter: nf_queue: don't assume sk is full socketFlorian Westphal2022-03-011-1/+10
* netfilter: fix use-after-free in __nf_register_net_hook()Eric Dumazet2022-02-281-2/+3
* netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variantEric Dumazet2022-02-231-2/+2
* netfilter: nf_tables: fix memory leak during stateful obj updateFlorian Westphal2022-02-221-4/+9
* netfilter: nft_limit: fix stateful object memory leakFlorian Westphal2022-02-211-0/+18
* netfilter: nf_tables: unregister flowtable hooks on netns exitPablo Neira Ayuso2022-02-211-0/+3
* netfilter: nf_tables_offload: incorrect flow offload action array sizePablo Neira Ayuso2022-02-204-2/+25
* netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependencyPablo Neira Ayuso2022-02-131-0/+2
* netfilter: nft_synproxy: unregister hooks on init error pathPablo Neira Ayuso2022-02-101-1/+3
* netfilter: xt_socket: fix a typo in socket_mt_destroy()Eric Dumazet2022-02-091-1/+1
* netfilter: ctnetlink: disable helper autoassignFlorian Westphal2022-02-041-1/+2
* netfilter: conntrack: re-init state for retransmitted syn-ackFlorian Westphal2022-02-041-0/+12
* netfilter: conntrack: move synack init code to helperFlorian Westphal2022-02-041-18/+29
* netfilter: nft_payload: don't allow th access for fragmentsFlorian Westphal2022-02-042-5/+6
* netfilter: conntrack: don't refresh sctp entries in closed stateFlorian Westphal2022-02-041-0/+9
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nfJakub Kicinski2022-01-273-2/+16
|\
| * netfilter: nf_tables: remove assignment with no effect in chain blob builderPablo Neira Ayuso2022-01-271-1/+0
| * netfilter: nft_byteorder: track register operationsPablo Neira Ayuso2022-01-271-0/+12
| * netfilter: nft_ct: fix use after free when attaching zone templateFlorian Westphal2022-01-271-1/+4
* | Merge tag 'net-5.17-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/net...Linus Torvalds2022-01-274-9/+19
|\|
| * netfilter: conntrack: don't increment invalid counter on NF_REPEATFlorian Westphal2022-01-161-3/+5
| * netfilter: nft_connlimit: memleak if nf_ct_netns_get() failsPablo Neira Ayuso2022-01-131-1/+10
| * netfilter: nf_tables: set last expression in register tracking areaPablo Neira Ayuso2022-01-121-1/+1
| * netfilter: nf_tables: remove unused variablePablo Neira Ayuso2022-01-111-2/+0
| * netfilter: nf_conntrack_netbios_ns: fix helper module aliasFlorian Westphal2022-01-111-2/+3
* | proc: remove PDE_DATA() completelyMuchun Song2022-01-223-16/+16
|/
* netfilter: nf_tables: typo NULL check in _clone() functionPablo Neira Ayuso2022-01-104-4/+4
* netfilter: nf_tables: don't use 'data_size' uninitializedLinus Torvalds2022-01-101-0/+1
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2022-01-092-0/+11
|\
| * netfilter: nft_set_pipapo: allocate pcpu scratch maps on cloneFlorian Westphal2022-01-061-0/+8
| * netfilter: nft_payload: do not update layer 4 checksum when mangling fragmentsPablo Neira Ayuso2022-01-061-0/+3
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextJakub Kicinski2022-01-0929-285/+786
|\ \
| * | netfilter: nft_meta: cancel register tracking after meta updatePablo Neira Ayuso2022-01-091-0/+20
| * | netfilter: nft_payload: cancel register tracking after payload updatePablo Neira Ayuso2022-01-091-0/+21
| * | netfilter: nft_bitwise: track register operationsPablo Neira Ayuso2022-01-093-2/+97
| * | netfilter: nft_meta: track register operationsPablo Neira Ayuso2022-01-091-0/+28
| * | netfilter: nft_payload: track register operationsPablo Neira Ayuso2022-01-091-0/+30
| * | netfilter: nf_tables: add register tracking infrastructurePablo Neira Ayuso2022-01-091-0/+11
| * | netfilter: nf_tables: add rule blob layoutPablo Neira Ayuso2022-01-093-63/+129
| * | netfilter: nft_limit: move stateful fields out of expression dataPablo Neira Ayuso2022-01-091-12/+82
| * | netfilter: nft_limit: rename stateful structurePablo Neira Ayuso2022-01-091-52/+52
| * | netfilter: nft_numgen: move stateful fields out of expression dataPablo Neira Ayuso2022-01-091-6/+28
| * | netfilter: nft_quota: move stateful fields out of expression dataPablo Neira Ayuso2022-01-091-5/+47
| * | netfilter: nft_last: move stateful fields out of expression dataPablo Neira Ayuso2022-01-091-18/+51
| * | netfilter: nft_connlimit: move stateful fields out of expression dataPablo Neira Ayuso2022-01-091-8/+18
| * | net: prefer nf_ct_put instead of nf_conntrack_putFlorian Westphal2022-01-091-2/+2
| * | netfilter: conntrack: avoid useless indirection during conntrack destructionFlorian Westphal2022-01-091-6/+6