diff options
| author | Pablo Neira Ayuso <pablo@netfilter.org> | 2026-03-25 22:39:55 +0100 |
|---|---|---|
| committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2026-03-26 13:24:40 +0100 |
| commit | 02a3231b6d82efe750da6554ebf280e4a6f78756 (patch) | |
| tree | 943fe14bb5a0ebf25c3165753ce46d1c5e9ba6d8 /scripts/git.orderFile | |
| parent | bffcaad9afdfe45d7fc777397d3b83c1e3ebffe5 (diff) | |
netfilter: nf_conntrack_expect: store netns and zone in expectation
__nf_ct_expect_find() and nf_ct_expect_find_get() are called under
rcu_read_lock() but they dereference the master conntrack via
exp->master.
Since the expectation does not hold a reference on the master conntrack,
this could be dying conntrack or different recycled conntrack than the
real master due to SLAB_TYPESAFE_RCU.
Store the netns, the master_tuple and the zone in struct
nf_conntrack_expect as a safety measure.
This patch is required by the follow up fix not to dump expectations
that do not belong to this netns.
Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'scripts/git.orderFile')
0 files changed, 0 insertions, 0 deletions
