Linux Netfilter development
 help / color / mirror / Atom feed
 messages from 2026-09-23 08:46:13 to 2026-09-29 09:34:17 UTC [more...]

Netfilter: match "tcp option" with the same type present multiple times
 2026-09-29  9:34 UTC  (14+ messages)

[PATCH net] netfilter: nf_conntrack_reasm: avoid truncating header offset
 2026-09-29  9:14 UTC  (2+ messages)

[BUG] netfilter: IPv6 conntrack fragment reassembly truncates header offset
 2026-09-29  9:07 UTC  (3+ messages)

[BUG] netfilter: IPv6 conntrack fragment reassembly truncates header offset
 2026-09-29  9:01 UTC 

[PATCH net 00/11] Netfilter/IPVS fixes for net
 2026-09-29  8:19 UTC  (21+ messages)
` [PATCH net 01/11] netfilter: ipset: do not update comments from kernel-side adds
` [PATCH net 02/11] ipvs: fix buffer overflow when sending sync messages
` [PATCH net 03/11] netfilter: nft_flow_offload: drop flowtable reference on init error path
` [PATCH net 04/11] ipvs: fix missing counter decrement in lblc
` [PATCH net 05/11] ipvs: bound LBLCR and LBLC cache growth
` [PATCH net 06/11] ipvs: do not create invisible templates
` [PATCH net 07/11] ipvs: filter some flags received in the backup server
` [PATCH net 08/11] netfilter: nft_set_rbtree: skip transaction elements during GC
` [PATCH net 09/11] netfilter: bpf: reject invalid NAT manipulation types
` [PATCH net 10/11] netfilter: flowtable: generalize pending status bit
` [PATCH net 11/11] netfilter: flowtable: restore ieee80211 forward path

[PATCH nf] ipvs: fix buffer overflow when sending sync messages
 2026-09-29  4:24 UTC  (2+ messages)

[PATCH net v4] net: cap skb->queue_mapping when the tx queue is picked
 2026-09-29  3:45 UTC  (3+ messages)

[PATCH net-next 00/11] Netfilter updates for net-next
 2026-09-29  2:40 UTC  (15+ messages)
` [PATCH net-next 01/11] netfilter: synproxy: fix reset of ct seqadj when reopening a connection
` [PATCH net-next 02/11] netfilter: conntrack: fix nf_conntrack_expect_max default value in documentation
` [PATCH net-next 03/11] netfilter: osf: remove unreachable break in nf_osf_ttl()
` [PATCH net-next 04/11] netfilter: fix several typos in comments
` [PATCH net-next 05/11] netfilter: conntrack: Untangle insert_failed counter from others
` [PATCH net-next 06/11] netfilter: conntrack: Untangle drop and invalid counters
` [PATCH net-next 07/11] net/sched: act_ct: set net pointer before publishing flowtable
` [PATCH net-next 08/11] netfilter: flowtable: check namespace before iterating flows
` [PATCH net-next 09/11] netfilter: nfnetlink: Fix for interrupted hook dumps
` [PATCH net-next 10/11] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter
` [PATCH net-next 11/11] netfilter: conntrack: make filtering by zone discoverable

[PATCH nf-next v5 0/4] netfilter: conntrack: shared port parser for helpers
 2026-09-28 20:56 UTC  (6+ messages)
` [PATCH nf-next v5 1/4] netfilter: conntrack: add shared uint and port parsers "
` [PATCH nf-next v5 2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port()
` [PATCH nf-next v5 3/4] netfilter: nf_conntrack_amanda: "
` [PATCH nf-next v5 4/4] netfilter: nf_conntrack_sip: use shared helper parsers

[PATCH 01/16 net-next v2] ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
 2026-09-28 19:30 UTC  (2+ messages)
` [PATCH 12/16 net-next v2] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4

[PATCH nf-next v2 1/2] netfilter: nf_queue: limit the hook drop flush to the unregistered hook point
 2026-09-28 18:58 UTC  (2+ messages)
` [PATCH nf-next v2 2/2] selftests: netfilter: nft_queue: check the scope of the hook drop flush

[PATCH nf] netfilter: br_netfilter: restore VLAN tag on refragmented IPv6 packets
 2026-09-28 16:46 UTC  (3+ messages)

[PATCH nf-next v4 0/4] netfilter: conntrack: shared port parser for helpers
 2026-09-28 15:23 UTC  (13+ messages)
` [PATCH nf-next v4 1/4] netfilter: conntrack: add shared uint and port parsers "
` [PATCH nf-next v4 2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port()
` [PATCH nf-next v4 3/4] netfilter: nf_conntrack_amanda: "
` [PATCH nf-next v4 4/4] netfilter: nf_conntrack_sip: use shared helper parsers

nf_queue: hook changes drop or re-queue packets waiting in any nfqueue
 2026-09-28 14:11 UTC  (5+ messages)
  ` [PATCH nf-next 1/2] netfilter: nf_queue: limit the hook drop flush to the unregistered hook point
  ` [PATCH nf-next 2/2] selftests: netfilter: nft_queue: check the scope of the hook drop flush

[PATCH nf 0/2] ipvs: fix OOB write when NATing ICMPv6 errors quoting non-first fragments
 2026-09-28 11:15 UTC  (5+ messages)
` [PATCH nf 1/2] ipvs: avoid out-of-bounds write in ip_vs_nat_icmp_v6
` [PATCH nf 2/2] ipv6: update *offset for non-first fragments in ipv6_find_hdr()

[PATCH] netfilter: ebtables: ebt_802_3: drop short frames before the match reads LLC
 2026-09-28  8:41 UTC  (3+ messages)

[PATCH net] netfilter: nf_tables: serialize offload stats with callback unbind
 2026-09-28  4:28 UTC  (3+ messages)

[nft PATCH] Fix for warnings when compiling for 32bit arch
 2026-09-27 19:33 UTC  (2+ messages)

[PATCH net v2] netfilter: flowtable: flush delete work after final GC
 2026-09-27 16:32 UTC 

[PATCH nf v5 0/3] ipvs: avoid stack overflow from recursive connection expiration
 2026-09-27 15:23 UTC  (7+ messages)
` [PATCH nf v5 1/3] ipvs: wait the running timer cb on conn deletion
` [PATCH nf v5 2/3] ipvs: avoid stack overflow from recursive connection expiration
` [PATCH nf v5 3/3] ipvs: reject FTP control ports as data ports

[PATCH nf v4 0/3] ipvs: avoid stack overflow from recursive connection expiration
 2026-09-27 14:48 UTC  (10+ messages)
` [PATCH nf v4 1/3] ipvs: wait the running timer cb on conn deletion
` [PATCH nf v4 2/3] ipvs: avoid stack overflow from recursive connection expiration
` [PATCH nf v4 3/3] ipvs: reject FTP control ports as data ports

[PATCH net] ipvs: fix protocol data lifetime during namespace teardown
 2026-09-27  6:24 UTC 

[PATCH nf v4 0/1] netfilter: x_tables: avoid holding mutex over faultable user copies
 2026-09-27  4:31 UTC  (2+ messages)
` [PATCH nf v4 1/1] "

[PATCH nf] netfilter: ip6t_SYNPROXY: check TCP header before verifying checksum
 2026-09-26 20:45 UTC 

[PATCH net] ipvs: Defer application parent freeing until after RCU readers
 2026-09-26 19:48 UTC  (2+ messages)

[syzbot] [netfilter?] kernel BUG in nf_ip6_checksum
 2026-09-26 18:23 UTC 

[PATCH] netfilter: conntrack: wait for RCU readers before freeing the hash
 2026-09-26 17:52 UTC 

[PATCH nf v4 0/1] netfilter: nf_dup: reject TEE and IPv4/IPv6/netdev nft dup in userns
 2026-09-26  9:19 UTC  (2+ messages)
` [PATCH nf v4 1/1] "

[nf PATCH v4] netfilter: nfnetlink: Fix for interrupted hook dumps
 2026-09-26  8:48 UTC  (3+ messages)

[PATCH nf v2 0/1] ipvs: wait grace period while reusing dest from trash
 2026-09-25 20:49 UTC  (3+ messages)
` [PATCH nf v2 1/1] "

[PATCH 6.18.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25 18:47 UTC  (6+ messages)
` [PATCH 6.18.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 6.18.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH request stable 6.12 6.6 6.1] netfilter: nf_tables_netdev_event UAF of binding chain
 2026-09-25 18:47 UTC  (8+ messages)
    ` [PATCH 6.12 1/2] netfilter: nf_tables: Tolerate chains with no remaining hooks
    ` [PATCH 6.12 2/2] netfilter: nf_tables: Simplify chain netdev notifier
    ` [PATCH 6.6 6.1 1/2] netfilter: nf_tables: Tolerate chains with no remaining hooks
    ` [PATCH 6.6 6.1 2/2] netfilter: nf_tables: Simplify chain netdev notifier

[PATCH nf 0/2] ipvs: keep templates and cport 0 conns away from packet lookups
 2026-09-25 17:39 UTC  (4+ messages)
` [PATCH nf 1/2] ipvs: validate cport in received sync records
` [PATCH nf 2/2] ipvs: skip cport 0 connections in ip_vs_conn_out_get()

[PATCH libnftnl v5] expr: add support to math expression
 2026-09-25 13:51 UTC 

[PATCH nf-next v6] netfilter: nf_tables: add math expression support
 2026-09-25 13:49 UTC 

[PATCH net v6 0/2] net: prevent partial checksums from modifying network headers
 2026-09-25  9:05 UTC  (9+ messages)
` [PATCH net v6 1/2] net: validate virtio checksum start after network header

[PATCH 5.10.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25  8:23 UTC  (3+ messages)
` [PATCH 5.10.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 5.10.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH 5.15.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25  8:21 UTC  (3+ messages)
` [PATCH 5.15.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 5.15.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH 6.1.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25  8:15 UTC  (3+ messages)
` [PATCH 6.1.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 6.1.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH 6.6.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25  8:09 UTC  (3+ messages)
` [PATCH 6.6.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 6.6.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH 6.12.y 0/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase
 2026-09-25  8:01 UTC  (3+ messages)
` [PATCH 6.12.y 1/2] rculist: add list_splice_rcu() for private lists
` [PATCH 6.12.y 2/2] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase

[PATCH net-next] netfilter: nf_flow_table_bpf: populate VLAN encap in XDP flowtable lookup
 2026-09-24 20:25 UTC 

[PATCH nf v3] netfilter: nft_reject: prevent unbounded recursion in output hooks
 2026-09-24 20:13 UTC 

[PATCH nf,v4] netfilter: flowtable: generalize pending status bit
 2026-09-24 20:11 UTC 

[ANNOUNCE] New mirrors to public git.netfilter.org repositories
 2026-09-24 18:19 UTC 

[PATCH net 0/6] ovs, net/sched: fixes for UAF after conntrack extension realloc
 2026-09-24 17:10 UTC  (5+ messages)
` [PATCH net 6/6] net/sched: act_ct: fix helper UAF due to extensions realloc

conntrack extension preallocation problems
 2026-09-24 10:46 UTC 

[PATCH net v5 2/2] ip: reject partial checksums covering network headers
 2026-09-24  8:54 UTC  (2+ messages)

[PATCH net v5 1/2] net: validate virtio checksum start after network header
 2026-09-24  8:54 UTC  (2+ messages)

[BUG] netfilter: nf_tables_netdev_event UAF of JUMP binding chain
 2026-09-24  7:05 UTC  (2+ messages)

[PATCH v2] netfilter: nf_nat: Fix stale outer UDP checksum on VXLAN encapsulated packets
 2026-09-24  7:04 UTC  (2+ messages)

[PATCH nf,v2] netfilter: flowtable: restore wireless forward path
 2026-09-23 22:22 UTC 

[PATCH nf v2] netfilter: nft_reject: prevent unbounded recursion in output hooks
 2026-09-23 22:06 UTC  (3+ messages)

[PATCH nf,v3] netfilter: nfnetlink_queue: hash queue instance by portid too
 2026-09-23 20:04 UTC  (2+ messages)

[PATCH nf] netfilter: flowtable: restore wireless forward path
 2026-09-23 19:50 UTC 

[PATCH v2 nf-next] netfilter: conntrack: add and use nf_ct_get_real()
 2026-09-23 12:27 UTC 

[PATCH nf,v3] netfilter: flowtable: generalize pending status bit
 2026-09-23 10:56 UTC 

[PATCH nf-next] netfilter: conntrack: add and use nf_ct_get_real()
 2026-09-23 10:54 UTC 

[PATCH net 0/2] netfilter: nf_conntrack_h323: fixes for NAT bypass and ASN.1 decode
 2026-09-23 10:46 UTC  (3+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox