Received: by 2002:a25:1506:0:0:0:0:0 with SMTP id 6csp1614997ybv; Fri, 21 Feb 2020 00:19:38 -0800 (PST) X-Google-Smtp-Source: APXvYqxEgIKGsLisMRkLuh2eAojo8EPYoUAlKS5fB16Sqq3dOMdiNuRyk0+rCf7Gt6QFsGMg0XZW X-Received: by 2002:a9d:6e8e:: with SMTP id a14mr25688970otr.109.1582273178099; Fri, 21 Feb 2020 00:19:38 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1582273178; cv=none; d=google.com; s=arc-20160816; b=YqOf4s7wv6IneGHlUiiyjemTZgAgeQxGXNNWg/3OoaBjl+jOf9DbPABQ1ie5id5SJN DPDEgvN2+/B4CpGRWoUfw01H+Z2n4Bmn7K4I2LrEtgqvU6+7pQtZlJ+Xl3WQ2m/ICrH+ mPiWWyum+M5Aie0ppGB+yNluHUX+mio+KdWbQMKii1ZI6USRToOyPQoG+scV0zF6cFw4 BH0iVBY8xJDYOzBcANv6Hhv4jTqzGIU4QTV6mRehr56h1sf/iiKmAhJsuLfJX1hZ/YWF JwneAqc7RmPN3F/Xw68fMvW8nFnJ59Ks2Oyr/iv/Jf4/8yp5EzV4bxXbmX7/qFTIPLZO kUVw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :user-agent:references:in-reply-to:message-id:date:subject:cc:to :from:dkim-signature; bh=he53x71rjDxa668z9J3XnT3giCe2pjyU5h5CdXd/I0M=; b=EbetixFBKxHP3kCX95Hf3hG9dGq7roNCfSDuYxeliawPoY/z0bmFqrX71+3efxUmKH 7RIDwFHBndD9Pb/sAhjk9QeaDU6XkYiWgEBGpp1GC4cWxAjrCoxEJwmRGHhUuMh1s0th uIVVdKEGNWFYEYFyR5GanxS8jStfr7FOIGf9EC5cyYxQkjaGngxI/gozKnpWdqKq3U/W m5Xgoi8tZR4z/r39rMgz2/ACqBFANfzd8PZTo8ysBXTEhCRi2qHvC2BW/GNqMvwjZXuS qx0DxqVNdb/RLBYqIyWX9OnmnFvUICdjakqNypmh3Vn9ctx5iQepgQm5vdESc56Rupid NJZQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b="U8Dk/fLe"; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id b2si1332287ots.284.2020.02.21.00.19.26; Fri, 21 Feb 2020 00:19:38 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b="U8Dk/fLe"; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S2387862AbgBUISd (ORCPT + 99 others); Fri, 21 Feb 2020 03:18:33 -0500 Received: from mail.kernel.org ([198.145.29.99]:56546 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1732908AbgBUISc (ORCPT ); Fri, 21 Feb 2020 03:18:32 -0500 Received: from localhost (83-86-89-107.cable.dynamic.v4.ziggo.nl [83.86.89.107]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id E474C24694; Fri, 21 Feb 2020 08:18:31 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1582273112; bh=oEKpmrzqCgSu7PgM1D8SMqu8f8GXJSZ7tAmg5JtYbvg=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=U8Dk/fLePPKfNof9Ch0i93S+mZclcFpM2X4oTorHILNkIPlQAZgzDYJDBxzGQuTOP HyCoCl407dsxlE5ZZdh94nFw7l1XR5TYDh9QJ8PSz2ZfUfvqlLVjHjSAVYh9DyhejM HCjbhYrFsU0LtT/Jhs50p5JIAK4Wa5YZbEqA5VMg= From: Greg Kroah-Hartman To: linux-kernel@vger.kernel.org Cc: Greg Kroah-Hartman , stable@vger.kernel.org, Davide Caratti , Jiri Pirko , "David S. Miller" Subject: [PATCH 4.19 006/191] net/sched: flower: add missing validation of TCA_FLOWER_FLAGS Date: Fri, 21 Feb 2020 08:39:39 +0100 Message-Id: <20200221072251.690370899@linuxfoundation.org> X-Mailer: git-send-email 2.25.1 In-Reply-To: <20200221072250.732482588@linuxfoundation.org> References: <20200221072250.732482588@linuxfoundation.org> User-Agent: quilt/0.66 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org From: Davide Caratti [ Upstream commit e2debf0852c4d66ba1a8bde12869b196094c70a7 ] unlike other classifiers that can be offloaded (i.e. users can set flags like 'skip_hw' and 'skip_sw'), 'cls_flower' doesn't validate the size of netlink attribute 'TCA_FLOWER_FLAGS' provided by user: add a proper entry to fl_policy. Fixes: 5b33f48842fa ("net/flower: Introduce hardware offload support") Signed-off-by: Davide Caratti Acked-by: Jiri Pirko Signed-off-by: David S. Miller Signed-off-by: Greg Kroah-Hartman --- net/sched/cls_flower.c | 1 + 1 file changed, 1 insertion(+) --- a/net/sched/cls_flower.c +++ b/net/sched/cls_flower.c @@ -486,6 +486,7 @@ static const struct nla_policy fl_policy [TCA_FLOWER_KEY_ENC_IP_TTL_MASK] = { .type = NLA_U8 }, [TCA_FLOWER_KEY_ENC_OPTS] = { .type = NLA_NESTED }, [TCA_FLOWER_KEY_ENC_OPTS_MASK] = { .type = NLA_NESTED }, + [TCA_FLOWER_FLAGS] = { .type = NLA_U32 }, }; static const struct nla_policy