Show patches with: State = Action Required       |    Archived = No       |   135 patches
« 1 2 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[1/2,nf-next] netfilter: seqadj: do not take ct lock if seqadj is NULL [1/2,nf-next] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-08-19 Fernando Fernandez Mancera New
[1/4] lib/ts_bm: advance state->offset past the reported match lib/textsearch: fix ts_bm resume offset, add tests, two small cleanups - 1 - - --- 2026-08-16 Bernard Ladenthin Under Review
[1/9,nf-next] netfilter: xtables: use DEBUG_NET_WARN_ON_ONCE in packet and control paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[2/2,nf-next] netfilter: synproxy: fix reset of ct seqadj when reopening a connection [1/2,nf-next] netfilter: seqadj: do not take ct lock if seqadj is NULL - 1 - - --- 2026-08-19 Fernando Fernandez Mancera New
[2/4] lib/tests: add KUnit tests for the textsearch infrastructure lib/textsearch: fix ts_bm resume offset, add tests, two small cleanups - - - - --- 2026-08-16 Bernard Ladenthin Under Review
[3/4] textsearch: align ts_state.cb like skb->cb lib/textsearch: fix ts_bm resume offset, add tests, two small cleanups - - - - --- 2026-08-16 Bernard Ladenthin Under Review
[3/9,nf-next] netfilter: nfnetlink: use DEBUG_NET_WARN_ON_ONCE for attribute validation netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[4/4] lib/ts_fsm: document that a match must consume the remaining data lib/textsearch: fix ts_bm resume offset, add tests, two small cleanups - - - - --- 2026-08-16 Bernard Ladenthin Under Review
[4/9,nf-next] netfilter: conntrack: use DEBUG_NET_WARN_ON_ONCE on packet paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[5/9,nf-next] netfilter: nat: use DEBUG_NET_WARN_ON_ONCE in core and helper paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[7/9,nf-next] netfilter: bpf: use DEBUG_NET_WARN_ON_ONCE for missing BTF structures netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[8/9,nf-next] netfilter: flowtable: use DEBUG_NET_WARN_ON_ONCE in offload path netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[BUG] KASAN: slab-use-after-free in hash_ipportip6_resize [BUG] KASAN: slab-use-after-free in hash_ipportip6_resize - - - - --- 2026-04-23 Eulgyu Kim Under Review
[RESEND,nf-next] netfilter: nf_conntrack_h323: fix double cursor advance in decode_int() [RESEND,nf-next] netfilter: nf_conntrack_h323: fix double cursor advance in decode_int() - 1 - - --- 2026-08-31 luoqing New
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl [V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl - - - - --- 2025-04-15 lvxiafei Under Review
[libnftnl,v4] expr: add support to math expression [libnftnl,v4] expr: add support to math expression - - - - --- 2026-04-21 Fernando Fernandez Mancera New
[net,06/12] ipvs: bound LBLCR and LBLC cache growth [net,01/12] ipvs: reject invalid states in connection template sync records 1 1 - - --- 2026-09-03 Pablo Neira Ayuso New
[net,07/12] netfilter: nft_payload: restrict checksum offsets to known values [net,01/12] ipvs: reject invalid states in connection template sync records - 1 - - --- 2026-09-03 Pablo Neira Ayuso New
[net,09/12] netfilter: nfnetlink_queue: hold nfnl mutex in event notifier [net,01/12] ipvs: reject invalid states in connection template sync records - 1 - - --- 2026-09-03 Pablo Neira Ayuso New
[net,v2] net/ipv6: don't route packets with unknown source address [net,v2] net/ipv6: don't route packets with unknown source address - 1 - - --- 2026-09-03 Íñigo Huguet New
[net,v2] net: flow_offload: serialize driver callback lists [net,v2] net: flow_offload: serialize driver callback lists - 1 - - --- 2026-07-26 Weiming Shi New
[net,v2] netfilter: ipset: add synchronize_rcu() in destroy to close use-after-free race [net,v2] netfilter: ipset: add synchronize_rcu() in destroy to close use-after-free race - 1 - - --- 2026-08-25 Cen Zhang (Microsoft) New
[net,v2] netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace() [net,v2] netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace() - - - - --- 2026-08-14 Joas Antonio dos Santos New
[net,v3] netfilter: nf_nat: recalculate TCP TS offset after SNAT port rewrite [net,v3] netfilter: nf_nat: recalculate TCP TS offset after SNAT port rewrite - 1 - - --- 2026-07-10 xietangxin New
[net-next,v2] netfilter: nf_conntrack_h323: fix double cursor advance in decode_int() [net-next,v2] netfilter: nf_conntrack_h323: fix double cursor advance in decode_int() - - - - --- 2026-08-24 luoqing New
[net-next,v3,1/4] netfilter: conntrack: add shared port and uint parsers for helpers netfilter: conntrack: shared port parser for helpers - - - - --- 2026-05-03 Rahul New
[net-next,v3,2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - 1 - - --- 2026-05-03 Rahul New
[net-next,v3,3/4] netfilter: nf_conntrack_amanda: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - 1 - - --- 2026-05-03 Rahul New
[net-next,v3,4/4] netfilter: nf_conntrack_sip: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - - - - --- 2026-05-03 Rahul New
[net] ipvs: shut down destination trash timer on netns cleanup [net] ipvs: shut down destination trash timer on netns cleanup - 1 - - --- 2026-09-04 Runyu Xiao New
[net] netfilter: ipset: list:set: defer ip_set_put_byindex to RCU callback [net] netfilter: ipset: list:set: defer ip_set_put_byindex to RCU callback - 1 - - --- 2026-08-20 Cen Zhang (Microsoft) New
[net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path [net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path - - - - --- 2026-08-04 Alexandre Ferrieux New
[nf,1/1] ipvs: guard estimator enqueue until limits are set ipvs: guard estimator enqueue until limits are set - 1 - - --- 2026-07-27 Ren Wei New
[nf,1/1] netfilter: ebtables: avoid unbounded counter allocations netfilter: ebtables: avoid unbounded counter allocations - 1 - - --- 2026-07-27 Ren Wei New
[nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize [nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize - 1 - 1 --- 2026-05-13 Ren Wei kadlec Needs Review / ACK
[nf,1/1] netfilter: nf_dup: prevent asynchronous duplicate recursion netfilter: nf_dup: prevent asynchronous duplicate recursion - 1 - - --- 2026-08-29 Zihan Xi New
[nf,1/1] netfilter: x_tables: avoid holding mutex over faultable user copies netfilter: x_tables: avoid holding mutex over faultable user copies - 1 - - --- 2026-09-01 Zihan Xi New
[nf,1/1] netfilter: xt_IDLETIMER: restrict to init_net netfilter: xt_IDLETIMER: restrict to init_net - 1 - - --- 2026-09-07 Zhiling Zou New
[nf,1/1] netfilter: xt_time: reject pre-epoch calendar matching [nf,1/1] netfilter: xt_time: reject pre-epoch calendar matching - 1 2 - --- 2026-07-03 Ren Wei New
[nf,v2,1/1] netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read - 1 - - --- 2026-09-06 Ren Wei New
[nf,v2,1/1] netfilter: nf_dup: disable duplication in user namespaces netfilter: nf_dup: disable duplication in user namespaces - 1 - - --- 2026-09-03 Zihan Xi New
[nf,v2] ipvs: make destination flags atomic [nf,v2] ipvs: make destination flags atomic - 1 - - --- 2026-07-08 Yizhou Zhao Needs Review / ACK
[nf,v2] netfilter: ip6t_rpfilter: reject routes without inet6_dev [nf,v2] netfilter: ip6t_rpfilter: reject routes without inet6_dev - 1 - - --- 2026-09-06 Weiming Shi New
[nf,v2] netfilter: nf_reject: initialize IPCB at inet ingress [nf,v2] netfilter: nf_reject: initialize IPCB at inet ingress - 1 - - --- 2026-08-10 David Lee New
[nf,v2] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v2] netfilter: nfnetlink: Fix for interrupted hook dumps - 2 - - --- 2026-09-03 Phil Sutter New
[nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error [nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error - 1 - - --- 2026-09-09 Pablo Neira Ayuso New
[nf,v3,RESEND,2/2] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error - 2 - - --- 2026-09-09 Pablo Neira Ayuso New
[nf,v3] netfilter: disable br_netfilter in user namespaces [nf,v3] netfilter: disable br_netfilter in user namespaces - - 1 - --- 2026-08-31 Florian Westphal New
[nf,v3] netfilter: nf_nat: unregister and release hooks on error [nf,v3] netfilter: nf_nat: unregister and release hooks on error - 1 - - --- 2026-09-02 Pablo Neira Ayuso New
[nf,v3] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v3] netfilter: nfnetlink: Fix for interrupted hook dumps - 2 - - --- 2026-09-04 Phil Sutter New
[nf,v3] netfilter: nft_payload: restrict checksum offsets to known values [nf,v3] netfilter: nft_payload: restrict checksum offsets to known values - 1 - - --- 2026-09-05 Florian Westphal New
[nf,v4] netfilter: nf_tables: fix device name and prefix match in hook lookup [nf,v4] netfilter: nf_tables: fix device name and prefix match in hook lookup - 1 - - --- 2026-08-27 Fernando Fernandez Mancera New
[nf,v4] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v4] netfilter: nfnetlink: Fix for interrupted hook dumps - 2 - - --- 2026-09-09 Phil Sutter New
[nf-next,1/4] netfilter: conntrack: Untangle insert_failed counter from others netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,2/4] netfilter: conntrack: Untangle drop and invalid counters netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,3/4] netfilter: conntrack: nf_ct_seq_adjust to return error cause netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,4/4] netfilter: conntrack: Improve invalid packet stats netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,v2,1/2] netfilter: flowtable: carry a priority into the offload [nf-next,v2,1/2] netfilter: flowtable: carry a priority into the offload - - - - --- 2026-09-02 Julius Bairaktaris New
[nf-next,v2,1/2] netfilter: flowtable: update netdev stats with HW_OFFLOAD flows Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nf-next,v2,1/3] netfilter: arp_tables: fix typo "alignement" in comment netfilter: fix typos in comments - - - - --- 2026-09-07 Hemanth Selam New
[nf-next,v2,1/6] net: netfilter: nf_flow_table: recognize IPv4/IPv6 in tunnel proto matching net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2,2/2] net: dsa: update net_device stats with HW offloaded flows stats Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nf-next,v2,2/2] selftests: netfilter: nft_flowtable.sh: check the priority a flow carries [nf-next,v2,1/2] netfilter: flowtable: carry a priority into the offload - - - - --- 2026-09-02 Julius Bairaktaris New
[nf-next,v2,2/3] netfilter: ipset: fix typo "artifical" in comment netfilter: fix typos in comments - - - - --- 2026-09-07 Hemanth Selam New
[nf-next,v2,2/6] net: netfilter: nf_flow_table: set inner protocol when popping tunnel header net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2,3/3] selftests: netfilter: fix typo "adress" in comment netfilter: fix typos in comments - - - - --- 2026-09-07 Hemanth Selam New
[nf-next,v2,3/6] net: netfilter: nf_flow_table: populate tunnel tuple regardless of inner protocol net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2,4/6] net: netfilter: add encap_proto to flow_offload_tunnel net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2,5/6] net: netfilter: nf_flow_table: refactor MTU check for tunnel offload net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2,6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6 net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload - - - - --- 2026-09-07 Lorenzo Bianconi New
[nf-next,v2] netfilter: osf: remove unreachable break in nf_osf_ttl() [nf-next,v2] netfilter: osf: remove unreachable break in nf_osf_ttl() - - - - --- 2026-08-21 Linkui Xiao New
[nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,2/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,3/8] netfilter: nf_tables: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,4/8] netfilter: synproxy: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,5/8] netfilter: sysctl: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,6/8] netfilter: nat: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,7/8] netfilter: conncount: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,8/8] netfilter: ipset: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3] netfilter: ipset: skip extension destroy on hash resize replay [nf-next,v3] netfilter: ipset: skip extension destroy on hash resize replay - 1 - - --- 2026-07-13 Weiming Shi New
[nf-next,v4] netfilter: ip6tables: hotdrop malformed hbh/dst and srh headers [nf-next,v4] netfilter: ip6tables: hotdrop malformed hbh/dst and srh headers - - - - --- 2026-08-07 Zhixing Chen New
[nf-next,v5] netfilter: flowtable: initial bridge support [nf-next,v5] netfilter: flowtable: initial bridge support - - - - --- 2026-07-13 Pablo Neira Ayuso New
[nf-next] netfilter: conntrack: make filtering by zone discoverable [nf-next] netfilter: conntrack: make filtering by zone discoverable - - - - --- 2026-09-04 Ilya Maximets New
[nf-next] netfilter: conntrack: sctp: validate vtag before state changes [nf-next] netfilter: conntrack: sctp: validate vtag before state changes - - - - --- 2026-07-31 Yizhou Zhao New
[nf-next] netfilter: flowtable: check namespace before iterating flows [nf-next] netfilter: flowtable: check namespace before iterating flows - - - - --- 2026-09-09 Qingfang Deng New
[nf-next] netfilter: flowtable: remove inline segmentation [nf-next] netfilter: flowtable: remove inline segmentation - - - - --- 2026-06-03 Qingfang Deng New
[nf] ipvs: fix more races around the overload flag [nf] ipvs: fix more races around the overload flag - 1 - - --- 2026-09-07 Julian Anastasov New
[nf] ipvs: revalidate ihl before icmp_send [nf] ipvs: revalidate ihl before icmp_send - 2 - - --- 2026-09-07 Julian Anastasov New
[nf] net/sched: act_ct: set net pointer before publishing flowtable [nf] net/sched: act_ct: set net pointer before publishing flowtable - 1 - - --- 2026-09-09 Qingfang Deng New
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection [nf] netfilter: conntrack: correct sequence on reinitialized TCP connection - 1 - - --- 2025-02-20 Pablo Neira Ayuso New
[nf] netfilter: flowtable: advertise the vlan match in used_keys [nf] netfilter: flowtable: advertise the vlan match in used_keys - 1 - - --- 2026-09-06 Julius Bairaktaris New
[nf] netfilter: flowtable: hold reference on ct until flow is released [nf] netfilter: flowtable: hold reference on ct until flow is released - 1 - - --- 2026-09-07 Pablo Neira Ayuso New
[nf] netfilter: ipset: do not update comments from kernel-side adds [nf] netfilter: ipset: do not update comments from kernel-side adds - 1 - - --- 2026-09-04 Florian Westphal New
[nf] netfilter: lwtunnel: expose read-only sysctl nf_hooks_lwtunnel for non init-netns [nf] netfilter: lwtunnel: expose read-only sysctl nf_hooks_lwtunnel for non init-netns - 1 - - --- 2026-08-24 Pablo Neira Ayuso New
[nf] netfilter: nf_tables: Fix netdev hook sanity checks [nf] netfilter: nf_tables: Fix netdev hook sanity checks - 1 - - --- 2026-08-27 Phil Sutter New
[nf] netfilter: nf_tables: skip expired catchall elements in dedup walk [nf] netfilter: nf_tables: skip expired catchall elements in dedup walk - 1 - - --- 2026-09-08 Aohan Mei New
[nf] netfilter: set on this module via struct netlink_dump_control [nf] netfilter: set on this module via struct netlink_dump_control - 5 - - --- 2026-09-08 Pablo Neira Ayuso New
[nf] netfilter: xt_IDLETIMER: allocate timer with kzalloc() [nf] netfilter: xt_IDLETIMER: allocate timer with kzalloc() - 1 - - --- 2026-09-07 Pablo Neira Ayuso New
[nft,1/2] parser_json: Accept non-RHS expressions in binop RHS A bit of non-constant binop follow-up - 1 - - --- 2026-04-02 Phil Sutter New
[nft,1/2] parser_json: fix CMD_OBJ/NFT_OBJECT mismatch in delete path parser_json: fix JSON delete of ct stateful objects - - - - --- 2026-08-11 Gergely Palotas New
« 1 2 »