netfilter: ebtables: abort if next_offset is too small
authorFlorian Westphal <fwestphal@astaro.com>
Mon, 15 Feb 2010 17:15:55 +0000 (18:15 +0100)
committerPatrick McHardy <kaber@trash.net>
Mon, 15 Feb 2010 17:15:55 +0000 (18:15 +0100)
commit1756de262e41112a8a8927808eb2f03d21fd4786
tree5cf74c0b735e6bcaa9b6dbded3ed91f43aaf6072
parentef00f89f1eb7e056aab9dfe068521e6f2320c94a
netfilter: ebtables: abort if next_offset is too small

next_offset must be > 0, otherwise this loops forever.
The offset also contains the size of the ebt_entry structure
itself, so anything smaller is invalid.

Signed-off-by: Florian Westphal <fwestphal@astaro.com>
Signed-off-by: Patrick McHardy <kaber@trash.net>
net/bridge/netfilter/ebtables.c