commit | e0ffdbc78d84e1da090f03ab62da3def0e65159e | [log] [tgz] |
---|---|---|
author | Liping Zhang <zlpnobody@gmail.com> | Wed Nov 23 22:12:21 2016 +0800 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Tue Dec 06 21:42:21 2016 +0100 |
tree | c93f76d2219fe8b7da2c3e18a958b2c6b6ba3074 | |
parent | 11583438b73fbc9117ff8afcbde8c934d0d63713 [diff] |
netfilter: nft_fib_ipv4: initialize *dest to zero Otherwise, if fib lookup fail, *dest will be filled with garbage value, so reverse path filtering will not work properly: # nft add rule x prerouting fib saddr oif eq 0 drop Fixes: f6d0cbcf09c5 ("netfilter: nf_tables: add fib expression") Signed-off-by: Liping Zhang <zlpnobody@gmail.com> Acked-by: Florian Westphal <fw@strlen.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>