[Bug 1325] New: Reproducible NULL ptr deref upon checking trivial nftables ruleset in Linux 5.0

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Thu Mar 7 03:06:32 CET 2019


https://bugzilla.netfilter.org/show_bug.cgi?id=1325

            Bug ID: 1325
           Summary: Reproducible NULL ptr deref upon checking trivial
                    nftables ruleset in Linux 5.0
           Product: nftables
           Version: unspecified
          Hardware: x86_64
                OS: Gentoo
            Status: NEW
          Severity: normal
          Priority: P5
         Component: kernel
          Assignee: pablo at netfilter.org
          Reporter: kfm at plushkava.net

After upgrading one of my machines from 4.19.26 to 5.0, I encountered a crash
during the boot process. This occurs at a point where nft(8) is invoked with
the -c option, so as to test the validity of the previously saved ruleset. I
was able to reduce the entire ruleset to just one rule, with the problem
remaining fully reproducible. The offending ruleset, the resulting oops message
and my kernel .config are duly attached.

The affected machine is running Gentoo Linux. As such, the kernel sources
include several minor patches above and beyond the kernel.org sources [1].
However, I have determined that these patches have no bearing on my ability to
reproduce the issue. The kernel and userland have been compiled with gcc 8.2.0.
Further, I am using nftables-0.9.0, which is linked to libnftnl-1.1.2 and
libmnl-1.0.4.

-- 
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20190307/dace8e25/attachment.html>


More information about the netfilter-buglog mailing list