netfilter: x_tables: assert minimum target size 16/154916/1
authorFlorian Westphal <fw@strlen.de>
Fri, 1 Apr 2016 12:17:25 +0000 (14:17 +0200)
committerSeung-Woo Kim <sw0312.kim@samsung.com>
Wed, 11 Oct 2017 11:17:01 +0000 (20:17 +0900)
commitd2a7b17872cad4bfcc83c3ef533b70d72ba69dc9
treed57eef04c32f5391af16edcbcc2049ba13fb62cd
parentd5e050a187ef557b909429806dc4f8dcfe355bc1
netfilter: x_tables: assert minimum target size

commit a08e4e190b866579896c09af59b3bdca821da2cd upstream.

The target size includes the size of the xt_entry_target struct.

Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Willy Tarreau <w@1wt.eu>
[sw0312.kim: cherry-pick from linux-3.10.y to apply CVE]
Signed-off-by: Seung-Woo Kim <sw0312.kim@samsung.com>
Change-Id: I5816975f4becd97316091724f183e67fe8e0479f
net/netfilter/x_tables.c