Show patches with: Submitter = Florian Westphal       |   3730 patches
« 1 2 3 437 38 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net,10/10] netfilter: nf_tables: fix use-after-free in nf_tables_addchain() [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,09/10] net: remove WARN_ON_ONCE when accessing forward path array [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,08/10] ipvs: do not keep dest_dst if dev is going down [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,07/10] ipvs: skip ipv6 extension headers for csum checks [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 2 - - --- 2026-02-17 Florian Westphal New
[net,06/10] include: uapi: netfilter_bridge.h: Cover for musl libc [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - - - - --- 2026-02-17 Florian Westphal New
[net,05/10] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,04/10] netfilter: nf_tables: revert commit_mutex usage in reset path [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,03/10] netfilter: nft_quota: use atomic64_xchg for reset [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,02/10] netfilter: nft_counter: serialize reset with spinlock [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,01/10] netfilter: annotate NAT helper hook pointers with __rcu [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - - - - --- 2026-02-17 Florian Westphal New
[net,00/10] netfilter: updates for net - - - - --- 2026-02-17 Florian Westphal New
[nf] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value [nf] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value - 1 - - --- 2026-02-11 Florian Westphal Under Review
[v2,net-next,11/11] netfilter: nft_set_rbtree: validate open interval overlap [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,10/11] netfilter: nft_set_rbtree: validate element belonging to interval [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,09/11] netfilter: nft_set_rbtree: check for partial overlaps in anonymous sets [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,08/11] netfilter: nft_set_rbtree: fix bogus EEXIST with NLM_F_CREATE with null interval [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,07/11] netfilter: nft_counter: fix reset of counters on 32bit archs [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,06/11] netfilter: nft_set_hash: fix get operation on big endian [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,05/11] selftests: netfilter: add IPV6_TUNNEL to config [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert 1 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,04/11] netfilter: flowtable: dedicated slab for flow entry [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - - - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,03/11] selftests: netfilter: nft_queue.sh: add udp fraglist gro test case [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - - - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,02/11] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,00/11] netfilter: updates for net-next - - - - --- 2026-02-06 Florian Westphal Accepted
[net,1/1] netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() [net,1/1] netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() - 1 - - --- 2026-02-05 Florian Westphal Accepted
[net,0/1] netfilter: update for net - - - - --- 2026-02-05 Florian Westphal Accepted
[v2,nf-next] netfilter: nft_set_rbtree: don't gc elements on insert [v2,nf-next] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-02 Florian Westphal Accepted
[nf-next] selftests: netfilter: add IPV6_TUNNEL to config [nf-next] selftests: netfilter: add IPV6_TUNNEL to config 1 1 - - --- 2026-01-30 Florian Westphal Accepted
[v2,nf-next] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [v2,nf-next] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation - 1 - - --- 2026-01-30 Florian Westphal Accepted
[nft] tests: shell: add test case for interval set with timeout and aborted transaction [nft] tests: shell: add test case for interval set with timeout and aborted transaction - - - - --- 2026-01-29 Florian Westphal Accepted
[nf-next] netfilter: nft_set_hash: fix get operation on big endian [nf-next] netfilter: nft_set_hash: fix get operation on big endian - 1 - - --- 2026-01-27 Florian Westphal Accepted
[nft] monitor: fix memleak in setelem cb [nft] monitor: fix memleak in setelem cb - - - - --- 2026-01-21 Florian Westphal Accepted
[nft] parser: move qualified meta expression parsing to flex/bison [nft] parser: move qualified meta expression parsing to flex/bison 1 - - - --- 2026-01-20 Florian Westphal Accepted
[nft,v2] parser_bison: on syntax errors, output expected tokens [nft,v2] parser_bison: on syntax errors, output expected tokens - - - - --- 2026-01-20 Florian Westphal Accepted
[nf] netfilter: xt_tcpmss: check remaining length before reading optlen [nf] netfilter: xt_tcpmss: check remaining length before reading optlen - - - - --- 2026-01-19 Florian Westphal Accepted
[nf-next] netfilter: nft_compat: add more restrictions on netlink attributes [nf-next] netfilter: nft_compat: add more restrictions on netlink attributes - 1 1 - --- 2026-01-16 Florian Westphal Accepted
[nft] tests: shell: add small packetpath test for hash and rbtree types [nft] tests: shell: add small packetpath test for hash and rbtree types - - - - --- 2026-01-15 Florian Westphal Accepted
[nft] tests: shell: add small packetpath test for bitmap set type [nft] tests: shell: add small packetpath test for bitmap set type - - - - --- 2026-01-15 Florian Westphal Accepted
[v2,nf-next] netfilter: nf_conntrack: don't rely on implicit includes [v2,nf-next] netfilter: nf_conntrack: don't rely on implicit includes - - - - --- 2026-01-08 Florian Westphal Accepted
[nf-next] netfilter: nf_conntrack: enable icmp clash support [nf-next] netfilter: nf_conntrack: enable icmp clash support - - - - --- 2026-01-08 Florian Westphal Accepted
[nf-next,2/2] netfilter: don't include xt and nftables.h in unrelated subsystems net: netfilter: avoid implicit includes - - - - --- 2026-01-07 Florian Westphal Accepted
[nf-next] netfilter: nf_tables: reset table validation state on abort [nf-next] netfilter: nf_tables: reset table validation state on abort - 1 - - --- 2026-01-05 Florian Westphal Accepted
[net,6/6] netfilter: nf_conncount: update last_gc only when GC has been performed [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,5/6] netfilter: nf_tables: fix memory leak in nf_tables_newrule() [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,4/6] netfilter: replace -EEXIST with -EBUSY [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - - - - --- 2026-01-02 Florian Westphal Accepted
[net,3/6] netfilter: nft_synproxy: avoid possible data-race on update operation [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,2/6] selftests: netfilter: nft_concat_range.sh: add check for overlap detection bug [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - - - - --- 2026-01-02 Florian Westphal Accepted
[net,1/6] netfilter: nft_set_pipapo: fix range overlap detection [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,0/6] netfilter: updates for net - - - - --- 2026-01-02 Florian Westphal Accepted
[net,6/6] selftests: netfilter: packetdrill: avoid failure on HZ=100 kernel [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - 1 - - --- 2025-12-16 Florian Westphal Accepted
[net,5/6] netfilter: nf_tables: avoid softlockup warnings in nft_chain_validate [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - - - - --- 2025-12-16 Florian Westphal Accepted
[net,4/6] netfilter: nf_tables: avoid chain re-validation if possible [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - - - 1 --- 2025-12-16 Florian Westphal Accepted
[net,3/6] netfilter: nf_tables: remove redundant chain validation on register store [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - 1 - - --- 2025-12-16 Florian Westphal Accepted
[net,2/6] netfilter: nf_nat: remove bogus direction check [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - 1 - - --- 2025-12-16 Florian Westphal Accepted
[net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file [net,1/6] MAINTAINERS: Remove Jozsef Kadlecsik from MAINTAINERS file - - - - --- 2025-12-16 Florian Westphal Accepted
[net,0/6] netfilter: updates for net - - - - --- 2025-12-16 Florian Westphal Accepted
[nf] selftests: netfilter: packetdrill: avoid failure on HZ=100 kernel [nf] selftests: netfilter: packetdrill: avoid failure on HZ=100 kernel - 1 - - --- 2025-12-11 Florian Westphal Accepted
[nf] netfilter: nf_tables: avoid softlockup warnings in nft_chain_validate [nf] netfilter: nf_tables: avoid softlockup warnings in nft_chain_validate - - - - --- 2025-12-11 Florian Westphal Accepted
[nf,v3] netfilter: nf_tables: avoid chain re-validation if possible [nf,v3] netfilter: nf_tables: avoid chain re-validation if possible - - - 1 --- 2025-12-11 Florian Westphal Accepted
[nf] netfilter: nf_nat: remove bogus direction check [nf] netfilter: nf_nat: remove bogus direction check - 1 - - --- 2025-12-09 Florian Westphal Accepted
[nf] selftests: netfilter: prefer xfail in case race wasn't triggered [nf] selftests: netfilter: prefer xfail in case race wasn't triggered - 1 - - --- 2025-12-08 Florian Westphal Accepted
[nf,2/2] selftests: netfilter: nft_concat_range.sh: add check for overlap detection bug [nf,1/2] netfilter: nft_set_pipapo: fix range overlap detection - - - - --- 2025-12-04 Florian Westphal Accepted
[nf,1/2] netfilter: nft_set_pipapo: fix range overlap detection [nf,1/2] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2025-12-04 Florian Westphal Accepted
[nft] tests: shell: bad_rule_graphs: add chain linked from different hooks [nft] tests: shell: bad_rule_graphs: add chain linked from different hooks - - - - --- 2025-11-25 Florian Westphal Accepted
[nft] src: move fuzzer functionality to separate tool [nft] src: move fuzzer functionality to separate tool 1 - - - --- 2025-11-20 Florian Westphal Accepted
[net,3/3] netfilter: nft_ct: add seqadj extension for natted connections [net,1/3] netfilter: nft_ct: enable labels for get case too - 1 - - --- 2025-10-29 Florian Westphal Accepted
[net,2/3] netfilter: nft_connlimit: fix possible data race on connection count [net,1/3] netfilter: nft_ct: enable labels for get case too - 1 - - --- 2025-10-29 Florian Westphal Accepted
[net,1/3] netfilter: nft_ct: enable labels for get case too [net,1/3] netfilter: nft_ct: enable labels for get case too - 1 - - --- 2025-10-29 Florian Westphal Accepted
[net,0/3] netfilter: updates for net - - - - --- 2025-10-29 Florian Westphal Accepted
[nft,v6,3/3] doc: minor improvements the `reject` statement doc: miscellaneous improvements - - - - --- 2025-10-28 Florian Westphal Accepted
[nft,v6,2/3] doc: fix/improve documentation of verdicts doc: miscellaneous improvements - - - - --- 2025-10-28 Florian Westphal Accepted
[nft,v6,1/3] doc: add overall description of the ruleset evaluation doc: miscellaneous improvements - - - - --- 2025-10-28 Florian Westphal Accepted
[nft] doc: remove queue from verdict list [nft] doc: remove queue from verdict list 1 - - - --- 2025-10-26 Florian Westphal Accepted
[nft] src: parser_json: fix format string bugs [nft] src: parser_json: fix format string bugs - 1 - - --- 2025-10-23 Florian Westphal Accepted
[nft,v3] src: add refcount asserts [nft,v3] src: add refcount asserts - - - - --- 2025-10-23 Florian Westphal Accepted
[nf] netfilter: nft_ct: enable labels for get case too [nf] netfilter: nft_ct: enable labels for get case too - 1 - - --- 2025-10-23 Florian Westphal Accepted
[nft,v2] support for afl++ (american fuzzy lop++) fuzzer [nft,v2] support for afl++ (american fuzzy lop++) fuzzer - - - - --- 2025-10-17 Florian Westphal Accepted
[nft] evaluate: follow prefix expression recursively [nft] evaluate: follow prefix expression recursively - - - - --- 2025-10-17 Florian Westphal Accepted
[nft] src: fix fmt string warnings [nft] src: fix fmt string warnings - - - - --- 2025-10-17 Florian Westphal Accepted
[nft,4/4] evaluate: reject tunnel section if another one is already present nft tunnel mode parser/eval fixes - - 1 - --- 2025-10-16 Florian Westphal Accepted
[nft,3/4] src: parser_bison: prevent multiple ip daddr/saddr definitions nft tunnel mode parser/eval fixes - - 1 - --- 2025-10-16 Florian Westphal Accepted
[nft,2/4] src: tunnel src/dst must be a symbolic expression nft tunnel mode parser/eval fixes - - 1 - --- 2025-10-16 Florian Westphal Accepted
[nft,1/4] evaluate: tunnel: don't assume src is set nft tunnel mode parser/eval fixes - - 1 - --- 2025-10-16 Florian Westphal Accepted
[nf-next] netfilter: conntrack: disable 0 value for conntrack_max setting [nf-next] netfilter: conntrack: disable 0 value for conntrack_max setting - - - - --- 2025-10-13 Florian Westphal Accepted
[net,4/4] selftests: netfilter: query conntrack state to check for port clash resolution [net,1/4] netfilter: nft_objref: validate objref and objrefmap expressions - 1 - - --- 2025-10-08 Florian Westphal Accepted
[net,3/4] selftests: netfilter: nft_fib.sh: fix spurious test failures [net,1/4] netfilter: nft_objref: validate objref and objrefmap expressions - 1 - - --- 2025-10-08 Florian Westphal Accepted
[net,2/4] bridge: br_vlan_fill_forward_path_pvid: use br_vlan_group_rcu() [net,1/4] netfilter: nft_objref: validate objref and objrefmap expressions - 1 - - --- 2025-10-08 Florian Westphal Accepted
[net,1/4] netfilter: nft_objref: validate objref and objrefmap expressions [net,1/4] netfilter: nft_objref: validate objref and objrefmap expressions - 1 - - --- 2025-10-08 Florian Westphal Accepted
[net,0/4] netfilter: updates for net - - - - --- 2025-10-08 Florian Westphal Accepted
[conntrack-tools] conntrack: --id argument is mandatory [conntrack-tools] conntrack: --id argument is mandatory - - 1 - --- 2025-10-08 Florian Westphal Accepted
[nft] tests: shell: add packetpath test for reject statement [nft] tests: shell: add packetpath test for reject statement - - - - --- 2025-10-08 Florian Westphal Accepted
[nft] tests: shell: fix name based checks with CONFIG_NF_TABLES=y [nft] tests: shell: fix name based checks with CONFIG_NF_TABLES=y - - - - --- 2025-10-07 Florian Westphal Accepted
[nft] tests: shell: type_route_chain: use in-tree nftables, not system-wide one [nft] tests: shell: type_route_chain: use in-tree nftables, not system-wide one - - - - --- 2025-10-07 Florian Westphal Accepted
[nft] src: tunnel: handle tunnel delete command [nft] src: tunnel: handle tunnel delete command - 1 1 - --- 2025-10-07 Florian Westphal Accepted
[nft] tests: py: must use input, not output [nft] tests: py: must use input, not output - - 2 - --- 2025-10-07 Florian Westphal Accepted
[nf] selftests: netfilter: query conntrack state to check for port clash resolution [nf] selftests: netfilter: query conntrack state to check for port clash resolution - 1 - - --- 2025-10-02 Florian Westphal Accepted
[nf] selftests: netfilter: nft_fib.sh: fix spurious test failures [nf] selftests: netfilter: nft_fib.sh: fix spurious test failures - 1 - - --- 2025-10-02 Florian Westphal Accepted
[net-next,6/6] netfilter: nf_conntrack: do not skip entries in /proc/net/nf_conntrack [net-next,1/6] ipvs: Defer ip_vs_ftp unregister during netns cleanup - 1 - - --- 2025-09-24 Florian Westphal Accepted
[net-next,5/6] selftests: netfilter: nft_concat_range.sh: add check for double-create bug [net-next,1/6] ipvs: Defer ip_vs_ftp unregister during netns cleanup - - 1 - --- 2025-09-24 Florian Westphal Accepted
[net-next,4/6] netfilter: nft_set_pipapo_avx2: fix skip of expired entries [net-next,1/6] ipvs: Defer ip_vs_ftp unregister during netns cleanup - 1 1 - --- 2025-09-24 Florian Westphal Accepted
« 1 2 3 437 38 »