Unverified Commit 42514171 authored by openeuler-ci-bot's avatar openeuler-ci-bot Committed by Gitee
Browse files

!7257 netfilter: nf_tables: disallow anonymous set with timeout flag

parents 2efde606 a49a03aa
Loading
Loading
Loading
Loading
+3 −0
Original line number Diff line number Diff line
@@ -4358,6 +4358,9 @@ static int nf_tables_newset(struct net *net, struct sock *nlsk,
		if ((flags & (NFT_SET_EVAL | NFT_SET_OBJECT)) ==
			     (NFT_SET_EVAL | NFT_SET_OBJECT))
			return -EOPNOTSUPP;
		if ((flags & (NFT_SET_ANONYMOUS | NFT_SET_TIMEOUT | NFT_SET_EVAL)) ==
			     (NFT_SET_ANONYMOUS | NFT_SET_TIMEOUT))
			return -EOPNOTSUPP;
	}

	dtype = 0;