commit | 6c8774a94e6ad26f29ef103c8671f55c255c6201 | [log] [tgz] |
---|---|---|
author | Eric Dumazet <edumazet@google.com> | Thu May 06 05:53:50 2021 -0700 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Fri May 07 10:01:39 2021 +0200 |
tree | 1a14a9f80a7ed0347b7f1a7f3c51b12d5404f4e1 | |
parent | a54754ec9891830ba548e2010c889e3c8146e449 [diff] |
netfilter: nftables: avoid potential overflows on 32bit arches User space could ask for very large hash tables, we need to make sure our size computations wont overflow. nf_tables_newset() needs to double check the u64 size will fit into size_t field. Fixes: 0ed6389c483d ("netfilter: nf_tables: rename set implementations") Signed-off-by: Eric Dumazet <edumazet@google.com> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>