提交 3e5e524f 编写于 作者: F Florian Westphal 提交者: Patrick McHardy

netfilter: CONFIG_COMPAT: allow delta to exceed 32767

with 32 bit userland and 64 bit kernels, it is unlikely but possible
that insertion of new rules fails even tough there are only about 2000
iptables rules.

This happens because the compat delta is using a short int.
Easily reproducible via "iptables -m limit" ; after about 2050
rules inserting new ones fails with -ELOOP.

Note that compat_delta included 2 bytes of padding on x86_64, so
structure size remains the same.
Signed-off-by: NFlorian Westphal <fw@strlen.de>
Signed-off-by: NPatrick McHardy <kaber@trash.net>
上级 fc0e3df4
...@@ -588,7 +588,7 @@ extern void xt_compat_unlock(u_int8_t af); ...@@ -588,7 +588,7 @@ extern void xt_compat_unlock(u_int8_t af);
extern int xt_compat_add_offset(u_int8_t af, unsigned int offset, short delta); extern int xt_compat_add_offset(u_int8_t af, unsigned int offset, short delta);
extern void xt_compat_flush_offsets(u_int8_t af); extern void xt_compat_flush_offsets(u_int8_t af);
extern short xt_compat_calc_jump(u_int8_t af, unsigned int offset); extern int xt_compat_calc_jump(u_int8_t af, unsigned int offset);
extern int xt_compat_match_offset(const struct xt_match *match); extern int xt_compat_match_offset(const struct xt_match *match);
extern int xt_compat_match_from_user(struct xt_entry_match *m, extern int xt_compat_match_from_user(struct xt_entry_match *m,
......
...@@ -39,7 +39,7 @@ MODULE_DESCRIPTION("{ip,ip6,arp,eb}_tables backend module"); ...@@ -39,7 +39,7 @@ MODULE_DESCRIPTION("{ip,ip6,arp,eb}_tables backend module");
struct compat_delta { struct compat_delta {
struct compat_delta *next; struct compat_delta *next;
unsigned int offset; unsigned int offset;
short delta; int delta;
}; };
struct xt_af { struct xt_af {
...@@ -439,10 +439,10 @@ void xt_compat_flush_offsets(u_int8_t af) ...@@ -439,10 +439,10 @@ void xt_compat_flush_offsets(u_int8_t af)
} }
EXPORT_SYMBOL_GPL(xt_compat_flush_offsets); EXPORT_SYMBOL_GPL(xt_compat_flush_offsets);
short xt_compat_calc_jump(u_int8_t af, unsigned int offset) int xt_compat_calc_jump(u_int8_t af, unsigned int offset)
{ {
struct compat_delta *tmp; struct compat_delta *tmp;
short delta; int delta;
for (tmp = xt[af].compat_offsets, delta = 0; tmp; tmp = tmp->next) for (tmp = xt[af].compat_offsets, delta = 0; tmp; tmp = tmp->next)
if (tmp->offset < offset) if (tmp->offset < offset)
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册