Florian Westphal 5bcf169444 netfilter: x_tables: limit allocation requests for blob rule heads
commit 9d5c12a7c08f67999772065afd50fb222072114e upstream.

This is a very conservative limit (134217728 rules), but good
enough to not trigger frequent oom from syzkaller.

Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2018-04-26 11:02:21 +02:00
..
2018-04-12 12:32:25 +02:00
2017-11-01 12:19:03 +09:00
2018-03-31 18:10:40 +02:00
2017-08-29 15:16:52 -07:00
2017-11-08 14:32:18 +09:00
2018-04-26 11:02:17 +02:00
2018-02-22 15:42:23 +01:00