[PATCH] ip6tables: check for valid init prior to calling

Harald Welte laforge at netfilter.org
Mon Jul 4 10:44:39 CEST 2005


On Mon, Jul 04, 2005 at 04:54:58AM +0000, Jonas Berlin wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Quoting Phil Oester on 2005-07-03 17:03 UTC:
> > Unlike iptables, ip6tables does not check that match|target->init
> > is !NULL prior to calling, leading to problems in those extensions
> > which don't define init, like owner:
> > 
> > # ip6tables -m owner
> > Segmentation fault
> > 
> > The below patch copies iptables checks.
> > 
> > Phil
> 
> Hmm, I already fixed this three months ago :)

seems like we should be doing a 1.3.2 release.  So everyone who still
has pending bugs/issues with current svn iptables, please raise your
voice _now_.

-- 
- Harald Welte <laforge at netfilter.org>                 http://netfilter.org/
============================================================================
  "Fragmentation is like classful addressing -- an interesting early
   architectural error that shows how much experimentation was going
   on while IP was being designed."                    -- Paul Vixie
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : /pipermail/netfilter-devel/attachments/20050704/27dcf1f4/attachment.bin


More information about the netfilter-devel mailing list