Pablo Neira Ayuso
71212c9b04
netfilter: nf_tables: don't drop IPv6 packets that cannot parse transport
...
This is overly conservative and not flexible at all, so better let them
go through and let the filtering policy decide what to do with them. We
use skb_header_pointer() all over the place so we would just fail to
match when trying to access fields from malformed traffic.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
2016-09-12 18:52:32 +02:00
..
2016-09-01 14:09:01 -07:00
2016-09-12 18:52:32 +02:00
2015-07-31 15:21:30 -07:00
2016-08-22 16:59:37 -07:00
2015-12-22 15:57:54 -05:00
2016-08-28 23:32:41 -04:00
2015-08-25 13:37:31 -07:00
2016-08-13 14:56:17 -07:00
2016-05-16 13:46:23 -04:00
2016-06-27 15:06:15 -04:00
2015-09-02 15:31:00 -07:00
2016-07-07 10:15:34 +10:00
2016-06-08 11:36:02 -07:00
2016-05-29 22:24:21 -07:00
2016-06-30 05:03:36 -04:00
2016-02-11 03:54:15 -05:00
2016-04-27 22:48:24 -04:00
2016-06-14 15:26:42 -04:00
2016-07-05 14:09:23 -07:00
2016-05-03 16:08:14 -04:00
2016-08-18 01:17:32 -04:00
2016-06-18 22:11:38 -07:00
2016-06-08 00:25:38 -07:00
2016-05-20 18:03:17 -04:00
2016-04-07 16:53:29 -04:00
2016-08-30 22:27:18 -07:00
2016-08-10 17:18:52 -07:00
2016-03-11 15:14:26 -05:00
2016-08-10 17:18:52 -07:00
2016-07-26 15:18:31 -07:00
2016-07-07 10:15:34 +10:00
2016-05-31 14:07:49 -07:00
2016-07-07 10:15:34 +10:00
2015-08-13 17:08:39 -07:00
2016-08-08 16:04:39 -07:00
2015-10-05 03:16:47 -07:00
2016-06-15 20:41:23 -07:00
2015-09-29 20:21:32 +02:00
2015-10-08 04:27:02 -07:00
2016-08-15 12:19:09 -07:00
2016-06-11 15:33:26 -07:00
2016-04-27 22:48:24 -04:00
2016-08-30 22:27:18 -07:00
2016-08-12 21:52:18 -07:00
2016-04-27 22:48:24 -04:00
2016-06-27 15:06:17 -04:00
2016-08-30 00:54:02 -04:00
2015-11-03 10:52:13 -05:00
2016-08-23 23:23:50 -07:00
2016-05-20 18:03:15 -04:00
2016-08-30 00:54:02 -04:00
2016-08-30 00:54:02 -04:00
2015-09-17 17:18:37 -07:00
2016-01-15 15:07:23 -05:00
2015-10-24 06:54:12 -07:00
2016-06-16 22:06:30 -07:00