Linux kernel mirror (for testing) git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
kernel os linux

[NETFILTER]: fix ctnetlink 'create_expect' parsing

There was a stupid copy+paste mistake where we parse the MASK nfattr into
the "tuple" variable instead of the "mask" variable. This patch fixes it.
Thanks to Pablo Neira.

Signed-off-by: Harald Welte <laforge@netfilter.org>
Signed-off-by: David S. Miller <davem@davemloft.net>

authored by

Harald Welte and committed by
David S. Miller
bd9a26b7 88aa0429

+1 -1
+1 -1
net/ipv4/netfilter/ip_conntrack_netlink.c
··· 1388 1388 err = ctnetlink_parse_tuple(cda, &tuple, CTA_EXPECT_TUPLE); 1389 1389 if (err < 0) 1390 1390 return err; 1391 - err = ctnetlink_parse_tuple(cda, &tuple, CTA_EXPECT_MASK); 1391 + err = ctnetlink_parse_tuple(cda, &mask, CTA_EXPECT_MASK); 1392 1392 if (err < 0) 1393 1393 return err; 1394 1394