Files
linux/include/net
Pablo Neira Ayuso 9798228442 netfilter: nf_tables: report use refcount overflow
commit 1689f25924 upstream.

Overflow use refcount checks are not complete.

Add helper function to deal with object reference counter tracking.
Report -EMFILE in case UINT_MAX is reached.

nft_use_dec() splats in case that reference counter underflows,
which should not ever happen.

Add nft_use_inc_restore() and nft_use_dec_restore() which are used
to restore reference counter from error and abort paths.

Use u32 in nft_flowtable and nft_object since helper functions cannot
work on bitfields.

Remove the few early incomplete checks now that the helper functions
are in place and used to check for refcount overflow.

Fixes: 96518518cc ("netfilter: add nftables")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2023-08-16 18:19:24 +02:00
..
2021-06-10 13:37:09 +02:00
2016-04-25 16:44:27 -04:00
2016-04-25 16:44:27 -04:00
2019-04-19 14:07:40 -07:00
2019-10-23 20:13:22 -07:00
2020-07-22 09:32:46 +02:00
2021-08-04 12:27:39 +02:00
2017-11-08 16:12:33 +09:00
2018-05-16 07:23:35 +02:00
2019-04-22 21:47:25 -07:00
2019-06-19 11:23:13 -04:00
2022-03-19 13:40:16 +01:00