index
:
linux-stable.git
linux-2.6.11.y
linux-2.6.12.y
linux-2.6.13.y
linux-2.6.14.y
linux-2.6.15.y
linux-2.6.16.y
linux-2.6.17.y
linux-2.6.18.y
linux-2.6.19.y
linux-2.6.20.y
linux-2.6.21.y
linux-2.6.22.y
linux-2.6.23.y
linux-2.6.24.y
linux-2.6.25.y
linux-2.6.26.y
linux-2.6.27.y
linux-2.6.28.y
linux-2.6.29.y
linux-2.6.30.y
linux-2.6.31.y
linux-2.6.32.y
linux-2.6.33.y
linux-2.6.34.y
linux-2.6.35.y
linux-2.6.36.y
linux-2.6.37.y
linux-2.6.38.y
linux-2.6.39.y
linux-3.0.y
linux-3.1.y
linux-3.10.y
linux-3.11.y
linux-3.12.y
linux-3.13.y
linux-3.14.y
linux-3.15.y
linux-3.16.y
linux-3.17.y
linux-3.18.y
linux-3.19.y
linux-3.2.y
linux-3.3.y
linux-3.4.y
linux-3.5.y
linux-3.6.y
linux-3.7.y
linux-3.8.y
linux-3.9.y
linux-4.0.y
linux-4.1.y
linux-4.10.y
linux-4.11.y
linux-4.12.y
linux-4.13.y
linux-4.14.y
linux-4.15.y
linux-4.16.y
linux-4.17.y
linux-4.18.y
linux-4.19.y
linux-4.2.y
linux-4.20.y
linux-4.3.y
linux-4.4.y
linux-4.5.y
linux-4.6.y
linux-4.7.y
linux-4.8.y
linux-4.9.y
linux-5.0.y
linux-5.1.y
linux-5.10.y
linux-5.11.y
linux-5.12.y
linux-5.13.y
linux-5.14.y
linux-5.15.y
linux-5.16.y
linux-5.17.y
linux-5.18.y
linux-5.19.y
linux-5.2.y
linux-5.3.y
linux-5.4.y
linux-5.5.y
linux-5.6.y
linux-5.7.y
linux-5.8.y
linux-5.9.y
linux-6.0.y
linux-6.1.y
linux-6.10.y
linux-6.11.y
linux-6.12.y
linux-6.13.y
linux-6.14.y
linux-6.15.y
linux-6.16.y
linux-6.17.y
linux-6.18.y
linux-6.19.y
linux-6.2.y
linux-6.3.y
linux-6.4.y
linux-6.5.y
linux-6.6.y
linux-6.7.y
linux-6.8.y
linux-6.9.y
linux-7.0.y
linux-rolling-lts
linux-rolling-stable
master
Linux kernel stable tree
Gitolite user
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
net
/
netfilter
Age
Commit message (
Expand
)
Author
2025-06-27
netfilter: nft_socket: fix sk refcount leaks
Florian Westphal
2025-06-04
netfilter: nf_tables: do not defer rule destruction via call_rcu
Florian Westphal
2025-06-04
netfilter: nf_tables: wait for rcu grace period on net_device removal
Pablo Neira Ayuso
2025-06-04
netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx
Florian Westphal
2025-06-04
netfilter: conntrack: Bound nf_conntrack sysctl writes
Nicolas Bouchinet
2025-06-04
netfilter: ipset: fix region locking in hash types
Jozsef Kadlecsik
2025-04-10
netfilter: nft_exthdr: fix offset with ipv4_find_option()
Alexey Kashavkin
2025-04-10
ipvs: prevent integer overflow in do_ip_vs_get_ctl()
Dan Carpenter
2025-04-10
netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert...
Kohei Enju
2025-01-09
netfilter: Replace zero-length array with flexible-array member
Gustavo A. R. Silva
2025-01-09
netfilter: ipset: Fix for recursive locking warning
Phil Sutter
2024-12-14
netfilter: nft_set_hash: skip duplicated elements pending gc run
Pablo Neira Ayuso
2024-12-14
netfilter: ipset: Hold module reference while requesting a module
Phil Sutter
2024-12-14
netfilter: x_tables: fix LED ID check in led_tg_check()
Dmitry Antipov
2024-12-14
ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init()
Jinghao Jia
2024-12-14
netfilter: ipset: add missing range check in bitmap_ip_uadt
Jeongjun Park
2024-11-08
netfilter: nft_payload: sanitize offset and length before calling skb_checksum()
Pablo Neira Ayuso
2024-11-08
netfilter: ctnetlink: compile ctnetlink_label_size with CONFIG_NF_CONNTRACK_E...
Simon Horman
2024-11-08
netfilter: nf_tables: reject expiration higher than timeout
Pablo Neira Ayuso
2024-11-08
netfilter: nf_tables: reject element expiration with no timeout
Pablo Neira Ayuso
2024-11-08
netfilter: nf_tables: elements with timeout below CONFIG_HZ never expire
Pablo Neira Ayuso
2024-09-12
netfilter: nf_conncount: fix wrong variable type
Yunjian Wang
2024-09-04
netfilter: nft_counter: Synchronize nft_counter_reset() against reader.
Sebastian Andrzej Siewior
2024-08-19
netfilter: nf_tables: prefer nft_chain_validate
Florian Westphal
2024-08-19
netfilter: nf_tables: use timestamp to check for set element timeout
Pablo Neira Ayuso
2024-08-19
netfilter: nf_tables: set element extended ACK reporting support
Pablo Neira Ayuso
2024-08-19
netfilter: ipset: Add list flush to cancel_gc
Alexander Maltsev
2024-08-19
netfilter: ctnetlink: use helper function to calculate expect ID
Pablo Neira Ayuso
2024-08-19
ipvs: Avoid unnecessary calls to skb_is_gso_sctp
Ismael Luceno
2024-07-05
netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
Pablo Neira Ayuso
2024-07-05
netfilter: nf_tables: validate family when identifying table via handle
Pablo Neira Ayuso
2024-07-05
netfilter: ipset: Fix suspicious rcu_dereference_protected()
Jozsef Kadlecsik
2024-07-05
netfilter: nftables: exthdr: fix 4-byte stack OOB write
Florian Westphal
2024-07-05
netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
Jozsef Kadlecsik
2024-06-16
netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
Eric Dumazet
2024-05-02
ipvs: Fix checksumming on GSO of SCTP packets
Ismael Luceno
2024-05-02
netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
Ziyang Xuan
2024-04-13
netfilter: nf_tables: discard table flag update with pending basechain deletion
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: release batch on table validation from abort path
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: reject new basechain after table flag update
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()
Ziyang Xuan
2024-04-13
netfilter: nf_tables: flush pending destroy work before exit_net release
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: disallow timeout for anonymous sets
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: reject constant set with timeout
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: disallow anonymous set with timeout flag
Pablo Neira Ayuso
2024-04-13
netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
Pablo Neira Ayuso
2024-03-26
netfilter: nf_tables: do not compare internal table flags on updates
Pablo Neira Ayuso
2024-03-15
netfilter: nf_conntrack_h323: Add protection for bmp length out of range
Lena Wang
2024-03-15
netfilter: nft_ct: fix l3num expectations with inet pseudo family
Florian Westphal
[next]