netfilter: nf_tables: fix wrong length for jump/goto verdicts
authorFlorian Westphal <fw@strlen.de>
Tue, 14 Apr 2015 14:44:14 +0000 (16:44 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Fri, 24 Apr 2015 18:51:23 +0000 (20:51 +0200)
commit4c4ed0748f82e26d8b884383e6737cf5a861ed6f
treeda58cb09446a1c1fe9ef3d4e61b621f8d20a25f5
parentb357a364c57c940ddb932224542494363df37378
netfilter: nf_tables: fix wrong length for jump/goto verdicts

NFT_JUMP/GOTO erronously sets length to sizeof(void *).

We then allocate insufficient memory when such element is added to a vmap.

Suggested-by: Patrick McHardy <kaber@trash.net>
Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nf_tables_api.c