diff options
author | Paolo Abeni <pabeni@redhat.com> | 2024-10-24 11:11:32 +0200 |
---|---|---|
committer | Paolo Abeni <pabeni@redhat.com> | 2024-10-24 11:11:33 +0200 |
commit | 1e424d08d35cc0d2811a810722f82236e7691cc8 (patch) | |
tree | d3b7a1c7052fff0d3ab1bd45d8e216f22230127b /security/lockdown | |
parent | 6e62807c7fbb3c758d233018caf94dfea9c65dbd (diff) | |
parent | 6889cd2a93e1e3606b3f6e958aa0924e836de4d2 (diff) | |
download | linux-1e424d08d35cc0d2811a810722f82236e7691cc8.tar.gz linux-1e424d08d35cc0d2811a810722f82236e7691cc8.tar.bz2 linux-1e424d08d35cc0d2811a810722f82236e7691cc8.zip |
Merge tag 'ipsec-2024-10-22' of git://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec
Steffen Klassert says:
====================
pull request (net): ipsec 2024-10-22
1) Fix routing behavior that relies on L4 information
for xfrm encapsulated packets.
From Eyal Birger.
2) Remove leftovers of pernet policy_inexact lists.
From Florian Westphal.
3) Validate new SA's prefixlen when the selector family is
not set from userspace.
From Sabrina Dubroca.
4) Fix a kernel-infoleak when dumping an auth algorithm.
From Petr Vaganov.
Please pull or let me know if there are problems.
ipsec-2024-10-22
* tag 'ipsec-2024-10-22' of git://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec:
xfrm: fix one more kernel-infoleak in algo dumping
xfrm: validate new SA's prefixlen using SA family when sel.family is unset
xfrm: policy: remove last remnants of pernet inexact list
xfrm: respect ip protocols rules criteria when performing dst lookups
xfrm: extract dst lookup parameters into a struct
====================
Link: https://patch.msgid.link/20241022092226.654370-1-steffen.klassert@secunet.com
Signed-off-by: Paolo Abeni <pabeni@redhat.com>
Diffstat (limited to 'security/lockdown')
0 files changed, 0 insertions, 0 deletions