summaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)Author
4 daysipvs: Guard access of HK_TYPE_KTHREAD cpumask with RCUWaiman Long
4 daysipvs: fix shift-out-of-bounds in ip_vs_rht_desired_sizeJulian Anastasov
4 daysipvs: fix races around est_mutex and est_cpulistJulian Anastasov
4 daysipvs: do not leak dest after get from dest trashJulian Anastasov
4 daysipvs: fix the spin_lock usage for RT buildJulian Anastasov
4 daysipvs: fix races around the conn_lfactor and svc_lfactor sysctl varsJulian Anastasov
4 daysipvs: fixes for the new ip_vs_status infoJulian Anastasov
8 daysnetfilter: flowtable: use skb_pull_rcsum() to pop vlan/pppoe headerPablo Neira Ayuso
8 daysnetfilter: flowtable: fix inline pppoe encapsulation in xmit pathPablo Neira Ayuso
8 daysnetfilter: flowtable: fix inline vlan encapsulation in xmit pathPablo Neira Ayuso
9 daysnetfilter: flowtable: ensure sufficient headroom in xmit pathPablo Neira Ayuso
9 daysnetfilter: xtables: fix L4 header parsing for non-first fragmentsFernando Fernandez Mancera
9 daysnetfilter: nf_tables: skip L4 header parsing for non-first fragmentsFernando Fernandez Mancera
9 daysnetfilter: nf_tables: fix netdev hook allocation memleak with dormant tablesFlorian Westphal
9 daysnetfilter: xt_CT: fix usersize for v1 and v2 revisionFlorian Westphal
9 daysnetfilter: nft_compat: run xt_check_hooks_{match,target}() from .validatePablo Neira Ayuso
9 daysnetfilter: x_tables: add .check_hooks to matches and targetsPablo Neira Ayuso
9 daysnetfilter: nft_fwd_netdev: use recursion counter in neigh egress pathWeiming Shi
9 daysnetfilter: nft_fwd_netdev: add device and headroom validate with neigh forwar...Pablo Neira Ayuso
9 daysnetfilter: replace skb_try_make_writable() by skb_ensure_writable()Pablo Neira Ayuso
10 daysnetfilter: skip recording stale or retransmitted INITXin Long
2026-04-24netfilter: nf_conntrack_sip: don't use simple_strtoulFlorian Westphal
2026-04-24netfilter: reject zero shift in nft_bitwiseKai Ma
2026-04-24netfilter: xt_policy: fix strict mode inbound policy matchingJiexun Wang
2026-04-21netfilter: nf_tables: add hook transactions for device deletionsPablo Neira Ayuso
2026-04-21netfilter: nf_tables: join hook list via splice_list_rcu() in commit phasePablo Neira Ayuso
2026-04-21netfilter: nf_tables: use list_del_rcu for netlink hooksFlorian Westphal
2026-04-20netfilter: nfnetlink_osf: fix potential NULL dereference in ttl checkFernando Fernandez Mancera
2026-04-20netfilter: nfnetlink_osf: fix out-of-bounds read on option matchingFernando Fernandez Mancera
2026-04-20ipvs: fix MTU check for GSO packets in tunnel modeYingnan Zhang
2026-04-20netfilter: nat: use kfree_rcu to release opsPablo Neira Ayuso
2026-04-20netfilter: xtables: restrict several matches to inet familyPablo Neira Ayuso
2026-04-20netfilter: conntrack: remove sprintf usageFlorian Westphal
2026-04-20netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULOXiang Mei
2026-04-20netfilter: nft_osf: restrict it to ipv4Pablo Neira Ayuso
2026-04-10netfilter: require Ethernet MAC header before using eth_hdr()Zhengchuan Liang
2026-04-10netfilter: nft_fwd_netdev: check ttl/hl before forwardingFlorian Westphal
2026-04-10netfilter: x_tables: Avoid a couple -Wflex-array-member-not-at-end warningsGustavo A. R. Silva
2026-04-10netfilter: conntrack: remove UDP-Lite conntrack supportFernando Fernandez Mancera
2026-04-10netfilter: xt_socket: enable defrag after all other checksFlorian Westphal
2026-04-10netfilter: xt_HL: add pr_fmt and checkentry validationMarino Dzalto
2026-04-10netfilter: nfnetlink: prefer skb_mac_header helpersFlorian Westphal
2026-04-10netfilter: x_physdev: reject empty or not-nul terminated device namesFlorian Westphal
2026-04-10ipvs: add conn_lfactor and svc_lfactor sysctl varsJulian Anastasov
2026-04-10ipvs: add ip_vs_status infoJulian Anastasov
2026-04-10ipvs: show the current conn_tab size to usersJulian Anastasov
2026-04-09Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski
2026-04-08netfilter: nfnetlink_queue: make hash table per queueFlorian Westphal
2026-04-08netfilter: nft_ct: fix use-after-free in timeout object destroyTuan Do
2026-04-08netfilter: xt_multiport: validate range encoding in checkentryRen Wei