Show patches with: none      |   34911 patches
« 1 2 3 4349 350 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf] netfilter: ebtables: fix OOB read in compat_mtw_from_user [nf] netfilter: ebtables: fix OOB read in compat_mtw_from_user - 1 - - --- 2026-05-20 Florian Westphal New
[nf,v2,3/3] selftests: netfilter: add nft_fib_nexthop test netfilter: nft_fib_ipv6: handle routes via external nexthop - - - - --- 2026-05-20 Jiayuan Chen New
[nf,v2,2/3] netfilter: nft_fib_ipv6: handle routes via external nexthop netfilter: nft_fib_ipv6: handle routes via external nexthop - 1 - - --- 2026-05-20 Jiayuan Chen New
[nf,v2,1/3] netfilter: nft_fib_ipv6: walk fib6_siblings under RCU netfilter: nft_fib_ipv6: handle routes via external nexthop - 1 - - --- 2026-05-20 Jiayuan Chen New
[nf,7/7] netfilter: xt_CT: fix race with rule removal and nfnetlink_queue [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,6/7] netfilter: nf_conntrack_timeout: use nf_ct_iterate_destroy() to cleanup timeout going away [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,5/7] netfilter: conntrack: add nf_ct_iterate_destroy_net() [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - - - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,4/7] netfilter: conntrack: add null check in nfct_help() calls [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,3/7] netfilter: nf_conntrack_helper: add null check in nfct_help_data() calls [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,2/7] netfilter: conntrack: add dead flag to helpers [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
[nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags [nf,1/7] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-19 Pablo Neira Ayuso New
netfilter: nf_conntrack_irc: fix parse_dcc() off-by-one OOB read netfilter: nf_conntrack_irc: fix parse_dcc() off-by-one OOB read - 1 - - --- 2026-05-19 Muhammad Bilal New
netfilter: synproxy: refresh tcphdr after skb_ensure_writable netfilter: synproxy: refresh tcphdr after skb_ensure_writable - 1 - - --- 2026-05-19 Chris Mason New
[nf] netfilter: xt_cpu: prefer raw_smp_processor_id [nf] netfilter: xt_cpu: prefer raw_smp_processor_id - 1 - - --- 2026-05-19 Florian Westphal New
[v2,nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption [v2,nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption - - - - --- 2026-05-19 Florian Westphal New
[6.6.y] netfilter: nf_tables: unconditionally bump set->nelems before insertion [6.6.y] netfilter: nf_tables: unconditionally bump set->nelems before insertion - 1 - - --- 2026-05-19 Li hongliang Handled Elsewhere
[6.12.y] netfilter: nf_tables: unconditionally bump set->nelems before insertion [6.12.y] netfilter: nf_tables: unconditionally bump set->nelems before insertion - 1 - - --- 2026-05-19 Li hongliang Handled Elsewhere
[nf,2/2] selftests: netfilter: add nft_fib_nexthop test [nf,1/2] netfilter: nft_fib_ipv6: handle routes via external nexthop - - - - --- 2026-05-19 Jiayuan Chen strlen Changes Requested
[nf,1/2] netfilter: nft_fib_ipv6: handle routes via external nexthop [nf,1/2] netfilter: nft_fib_ipv6: handle routes via external nexthop - 1 - - --- 2026-05-19 Jiayuan Chen strlen Changes Requested
ipvs: Use flexible array for MH lookup table ipvs: Use flexible array for MH lookup table - - - - --- 2026-05-19 Rosen Penev strlen Changes Requested
[4/3,nf,v4] netfilter: nf_conntrack_helper: call .destroy() when helper is unregistered Untitled series #504819 - 1 - - --- 2026-05-18 Pablo Neira Ayuso New
[nf,v4,3/3] netfilter: nf_conntrack_helper: add null check in nfct_help_data() calls [nf,v4,1/3] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-18 Pablo Neira Ayuso New
[nf,v4,2/3] netfilter: conntrack: add dead flag to helpers [nf,v4,1/3] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-18 Pablo Neira Ayuso New
[nf,v4,1/3] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags [nf,v4,1/3] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - - - - --- 2026-05-18 Pablo Neira Ayuso New
[bpf-next,v6,6/6] selftests/bpf: add bpf_icmp_send recursion test bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[bpf-next,v6,5/6] selftests/bpf: add bpf_icmp_send kfunc IPv6 tests bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[bpf-next,v6,4/6] selftests/bpf: add bpf_icmp_send kfunc tests bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[bpf-next,v6,3/6] bpf: add bpf_icmp_send kfunc bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[bpf-next,v6,2/6] net: move netfilter nf_reject6_fill_skb_dst to core ipv6 bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[bpf-next,v6,1/6] net: move netfilter nf_reject_fill_skb_dst to core ipv4 bpf: add icmp_send kfunc - - - - --- 2026-05-18 Mahe Tardy Handled Elsewhere
[net] xfrm: validate IPv4 header length before output transforms [net] xfrm: validate IPv4 header length before output transforms - - - - --- 2026-05-17 Michael Bommarito Handled Elsewhere
[nf,v2,1/1] netfilter: ipset: preserve comment lifetime across resize and gc expiry [nf,v2,1/1] netfilter: ipset: preserve comment lifetime across resize and gc expiry - 1 - - --- 2026-05-17 Ren Wei New
[nf,1/1] netfilter: nf_dup: preserve socket ownership on egress duplicates [nf,1/1] netfilter: nf_dup: preserve socket ownership on egress duplicates - 1 - - --- 2026-05-17 Ren Wei strlen Changes Requested
[nf] netfilter: disable payload mangling in userns [nf] netfilter: disable payload mangling in userns - - - 1 --- 2026-05-16 Qi Tang New
[net,12/12] netfilter: nf_queue: hold bridge skb->dev while queued [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,11/12] netfilter: br_netfilter: Reallocate headroom if necessary in neigh_hh_bridge() [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 1 - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,10/12] netfilter: ipset: annotate "pos" for concurrent readers/writers [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,09/12] netfilter: ipset: Fix data race between add and dump in all hash types [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,08/12] netfilter: ipset: Fix data race between add and list header in all hash types [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,07/12] netfilter: ip6t_hbh: reject oversized option lists [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,06/12] netfilter: nft_inner: release local_lock before re-enabling softirqs [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 1 - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,05/12] netfilter: ipset: stop hash:* range iteration at end [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,04/12] netfilter: nft_inner: Fix IPv6 inner_thoff desync [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 1 - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,03/12] netfilter: ipset: fix a potential dump-destroy race [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - - - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,02/12] ipvs: avoid possible loop in ip_vs_dst_event on resizing [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log [net,01/12] netfilter: nf_conntrack_helper: fix possible null deref during error log - 1 - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[net,00/12] Netfilter/IPVS fixes for net - - - - --- 2026-05-16 Pablo Neira Ayuso Accepted
[v2,net-next,2/2] ipvs: Replace use of system_unbound_wq with system_dfl_long_wq Untitled series #504460 - - - - --- 2026-05-15 Marco Crivellari New
[nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption [nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption - - - - --- 2026-05-15 Florian Westphal Changes Requested
[RFC] netfilter: disable payload mangling in userns [RFC] netfilter: disable payload mangling in userns - - - - --- 2026-05-15 Florian Westphal RFC
[nf,v2,1/1] netfilter: nf_queue: hold bridge skb->dev while queued [nf,v2,1/1] netfilter: nf_queue: hold bridge skb->dev while queued - 1 - - --- 2026-05-15 Ren Wei Accepted
[nf,v3,2/2] netfilter: conntrack: add dead flag to helpers [nf,v3,1/2] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - 1 - - --- 2026-05-14 Pablo Neira Ayuso Superseded
[nf,v3,1/2] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags [nf,v3,1/2] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags - - - - --- 2026-05-14 Pablo Neira Ayuso Superseded
[net,v4] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() [net,v4] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() - 1 1 - --- 2026-05-14 Lorenzo Bianconi Accepted
[nf,v2] netfilter: conntrack: add dead flag to helpers [nf,v2] netfilter: conntrack: add dead flag to helpers - 1 - - --- 2026-05-14 Pablo Neira Ayuso Changes Requested
[nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct [nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct - 1 - - --- 2026-05-14 Fernando Fernandez Mancera New
[v7,10/10] netfilter: ipset: add comment how cidr bookkeeping is working netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,09/10] netfilter: ipset: fix potential torn read in reuse/forceadd cases netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,08/10] netfilter: ipset: skip gc when resize is in progress netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,07/10] netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,06/10] netfilter: ipset: Don't use test_bit() in lockless RCU readers in bitmap types netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,05/10] netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Changes Requested
[v7,04/10] netfilter: ipset: annotate "pos" for concurrent readers/writers netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Accepted
[v7,03/10] netfilter: ipset: Fix data race between add and dump in all hash types netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Accepted
[v7,02/10] netfilter: ipset: Fix data race between add and list header in all hash types netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Accepted
[v7,01/10] netfilter: ipset: fix a potential dump-destroy race netfilter: ipset fixes - - - - --- 2026-05-14 Jozsef Kadlecsik Accepted
[nf,1/1] netfilter: xt_IDLETIMER: scope timer reuse to the owning netns [nf,1/1] netfilter: xt_IDLETIMER: scope timer reuse to the owning netns - 1 - 1 --- 2026-05-14 Ren Wei Rejected
[nf,1/1] bridge: br_netfilter: give fake rtable its own lifetime [nf,1/1] bridge: br_netfilter: give fake rtable its own lifetime - 1 - - --- 2026-05-14 Ren Wei New
[net,v3] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() [net,v3] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() - 1 1 - --- 2026-05-13 Lorenzo Bianconi Changes Requested
[nf] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct [nf] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct - 1 - - --- 2026-05-13 Fernando Fernandez Mancera Changes Requested
[nf,1/1] netfilter: ip6t_hbh: reject oversized option lists [nf,1/1] netfilter: ip6t_hbh: reject oversized option lists - 1 - - --- 2026-05-13 Ren Wei Accepted
[nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize [nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize - 1 - 1 --- 2026-05-13 Ren Wei kadlec Needs Review / ACK
[nf,v2] netfilter: nf_queue: hold reference on skb->dev [nf,v2] netfilter: nf_queue: hold reference on skb->dev - - - - --- 2026-05-12 Pablo Neira Ayuso Superseded
[nf] netfilter: nf_queue: hold reference on skb->dev [nf] netfilter: nf_queue: hold reference on skb->dev - - - - --- 2026-05-12 Pablo Neira Ayuso Changes Requested
[net-next] netfilter: nf_conntrack_proto_tcp: fix typos in comments [net-next] netfilter: nf_conntrack_proto_tcp: fix typos in comments - - - - --- 2026-05-12 Avinash Duduskar New
[nf] netfilter: conntrack: add dead flag to helpers [nf] netfilter: conntrack: add dead flag to helpers - 1 - - --- 2026-05-12 Pablo Neira Ayuso Changes Requested
[net,2/2] ipv4: ah: harden ah_output options-copy guard against ihl < 5 ipv4: harden against ihl < 5 IP_HDRINCL packets - 1 - - --- 2026-05-12 Michael Bommarito Handled Elsewhere
[net,1/2] ipv4: raw: reject IP_HDRINCL packets with ihl < 5 ipv4: harden against ihl < 5 IP_HDRINCL packets - 1 - - --- 2026-05-12 Michael Bommarito Handled Elsewhere
[nf-next,v2] netfilter: add option for GCOV profiling [nf-next,v2] netfilter: add option for GCOV profiling 1 - - - --- 2026-05-12 Florian Westphal New
[v3,nf-next] netfilter: nft_byteorder: remove multi-register support [v3,nf-next] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2026-05-12 Florian Westphal New
[v5,nf-next] selftests: netfilter: Add bridge_fastpath.sh [v5,nf-next] selftests: netfilter: Add bridge_fastpath.sh - - - - --- 2026-05-12 Eric Woudstra New
[v20,nf-next,2/2] netfilter: bridge: Add conntrack double vlan and pppoe conntrack: bridge: add double vlan, pppoe and pppoe-in-q - - - - --- 2026-05-12 Eric Woudstra New
[v20,nf-next,1/2] netfilter: utils: nf_ip(6)_checksum(_partial) correct data!=networkheader conntrack: bridge: add double vlan, pppoe and pppoe-in-q - - - - --- 2026-05-12 Eric Woudstra New
[nf] netfilter: nft_inner: release local_lock before re-enabling softirqs [nf] netfilter: nft_inner: release local_lock before re-enabling softirqs - 1 1 - --- 2026-05-12 Florian Westphal Accepted
[nf,4/4] netfilter: ipset: hash:ip,port,net: stop IPv4 range walk at upper bound [nf,1/4] netfilter: ipset: stop hash:ip,mark range iteration at end - 1 - - --- 2026-05-12 Ren Wei strlen Accepted
[nf,3/4] netfilter: ipset: stop hash:ip,port range iteration at end [nf,1/4] netfilter: ipset: stop hash:ip,mark range iteration at end - 1 - - --- 2026-05-12 Ren Wei strlen Accepted
[nf,2/4] netfilter: ipset: stop hash:ip,port,ip range iteration at end [nf,1/4] netfilter: ipset: stop hash:ip,mark range iteration at end - 1 - - --- 2026-05-12 Ren Wei strlen Accepted
[nf,1/4] netfilter: ipset: stop hash:ip,mark range iteration at end [nf,1/4] netfilter: ipset: stop hash:ip,mark range iteration at end - 1 - - --- 2026-05-12 Ren Wei strlen Accepted
[nf,1/1] netfilter: nf_queue: hold bridge skb->dev while queued [nf,1/1] netfilter: nf_queue: hold bridge skb->dev while queued - 1 - 1 --- 2026-05-12 Ren Wei Superseded
[nft] cache: honor -c/--check for reset commands [nft] cache: honor -c/--check for reset commands - 1 - - --- 2026-05-11 Pablo Neira Ayuso New
[v2,nf] netfilter: nft_inner: Fix IPv6 inner_thoff desync [v2,nf] netfilter: nft_inner: Fix IPv6 inner_thoff desync - 1 1 - --- 2026-05-11 Yizhou Zhao Accepted
[net,v2] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() [net,v2] net: neigh: Reallocate headroom if necessary in neigh_hh_bridge() - 1 - - --- 2026-05-11 Lorenzo Bianconi Changes Requested
[nf] netfilter: conntrack: tcp: do not force CLOSE on invalid-seq RST without direction check [nf] netfilter: conntrack: tcp: do not force CLOSE on invalid-seq RST without direction check - 1 - - --- 2026-05-11 Hamza Mahfooz New
[nf,v4] netfilter: nf_tables: fix dst corruption in same register operation [nf,v4] netfilter: nf_tables: fix dst corruption in same register operation 1 1 - - --- 2026-05-11 Fernando Fernandez Mancera New
[net-next,2/2] ipvs: Replace use of system_unbound_wq with system_dfl_wq Untitled series #503729 - - - - --- 2026-05-11 Marco Crivellari New
[v2,nft] netfilter: nft_inner: Fix IPv6 inner_thoff desync [v2,nft] netfilter: nft_inner: Fix IPv6 inner_thoff desync - 1 - - --- 2026-05-11 Yizhou Zhao strlen Superseded
[nft] netfilter: nft_inner: Fix IPv6 inner_thoff desync [nft] netfilter: nft_inner: Fix IPv6 inner_thoff desync - 1 - - --- 2026-05-10 Yizhou Zhao strlen Superseded
[v3,nf] ipvs: avoid possible loop in ip_vs_dst_event on resizing [v3,nf] ipvs: avoid possible loop in ip_vs_dst_event on resizing - 1 - - --- 2026-05-10 Julian Anastasov Accepted
[conntrack-tools] tests: cli-test.sh: improve logging for CI pipelines [conntrack-tools] tests: cli-test.sh: improve logging for CI pipelines - - - - --- 2026-05-09 Florian Westphal strlen Accepted
[conntrack-tools] tests: bulk-load-stress.sh: return early if ct_max is reached [conntrack-tools] tests: bulk-load-stress.sh: return early if ct_max is reached - - - - --- 2026-05-09 Florian Westphal strlen Accepted
« 1 2 3 4349 350 »