Florian Westphal e7af210e6d netfilter: nft_payload: reject out-of-range attributes via policy
Now that nla_policy allows range checks for bigendian data make use of
this to reject such attributes.  At this time, reject happens later
from the init or select_ops callbacks, but its prone to errors.

In the future, new attributes can be handled via NLA_POLICY_MAX_BE
and exiting ones can be converted one by one.

Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: David S. Miller <davem@davemloft.net>
2022-09-07 12:33:44 +01:00
..
2022-08-08 20:04:35 -07:00
2022-02-25 09:36:06 +01:00
2022-09-04 11:24:34 +01:00
2022-05-25 12:22:58 -07:00
2022-08-22 11:40:01 -07:00
2022-09-04 11:24:34 +01:00
2022-08-22 14:26:30 +01:00
2022-08-22 14:26:30 +01:00