Re: [PATCH nf v3] netfilter: ip6tables: set hotdrop for malformed extension header matches
Zhixing Chen <[email protected]>
| Newsgroups | gmane.comp.security.firewalls.netfilter.devel,gmane.linux.network |
|---|---|
| Message-ID | <CAMyuFdU0m_VZU+cDAJXROZTqJk8HE75mu47ttVManC_osg62zA@mail.gmail.com> |
> This patch should target nf-next, it does not fix any real crash. > > There are also issues in this patch to be addressed, see: > > https://sashiko.dev/#/patchset/20260724110111.18783-1-running910%40gmail.com Hi Pablo, Thanks for the review. I have retargeted this to nf-next in v4, as suggested. I also carefully reviewed the relevant code paths together with the sashiko report and updated the patch accordingly. I have just sent v4. Thanks, Zhixing