ELBA-2024-6174

ELBA-2024-6174 - libnftnl bug fix update

Type:BUG
Impact:NA
Release Date:2024-09-03

Description


[[1.2.6-4.el9]]
- Bump release for side-tag build with fixed libmnl (Phil Sutter) [RHEL-28515]

[[1.2.6-3.el9]]
- tests: Fix objref test case (Phil Sutter) [RHEL-28515]
- expr: Respect data_len when setting attributes (Phil Sutter) [RHEL-28515]
- obj: Respect data_len when setting attributes (Phil Sutter) [RHEL-28515]
- utils: Introduce and use nftnl_set_str_attr() (Phil Sutter) [RHEL-28515]
- obj: Enforce attr_policy compliance in nftnl_obj_set_data() (Phil Sutter) [RHEL-28515]
- obj: Introduce struct obj_ops::attr_policy (Phil Sutter) [RHEL-28515]
- obj: Call obj_ops::set with legal attributes only (Phil Sutter) [RHEL-28515]
- obj: Repurpose struct obj_ops::max_attr field (Phil Sutter) [RHEL-28515]
- obj: Return value on setters (Phil Sutter) [RHEL-28515]
- object: getters take const struct (Phil Sutter) [RHEL-28515]
- utils: Fix for wrong variable use in nftnl_assert_validate() (Phil Sutter) [RHEL-28515]
- obj: synproxy: Use memcpy() to handle potentially unaligned data (Phil Sutter) [RHEL-28515]
- obj: Do not call nftnl_obj_set_data() with zero data_len (Phil Sutter) [RHEL-28515]
- table: Validate NFTNL_TABLE_OWNER, too (Phil Sutter) [RHEL-28515]
- set: Validate NFTNL_SET_ID, too (Phil Sutter) [RHEL-28515]
- obj: Validate NFTNL_OBJ_TYPE, too (Phil Sutter) [RHEL-28515]
- flowtable: Validate NFTNL_FLOWTABLE_SIZE, too (Phil Sutter) [RHEL-28515]
- table: Validate NFTNL_TABLE_USE, too (Phil Sutter) [RHEL-28515]
- chain: Validate NFTNL_CHAIN_USE, too (Phil Sutter) [RHEL-28515]
- expr: Enforce attr_policy compliance in nftnl_expr_set() (Phil Sutter) [RHEL-28515]
- expr: Introduce struct expr_ops::attr_policy (Phil Sutter) [RHEL-28515]
- include: Sync nf_log.h with kernel headers (Phil Sutter) [RHEL-28515]
- expr: Call expr_ops::set with legal types only (Phil Sutter) [RHEL-28515]
- expr: Repurpose struct expr_ops::max_attr field (Phil Sutter) [RHEL-28515]
- udata: incorrect userdata buffer size validation (Phil Sutter) [RHEL-28515]
- obj: ct_timeout: setter checks for timeout array boundaries (Phil Sutter) [RHEL-28515]
- set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} (Phil Sutter) [RHEL-28515]
- set: buffer overflow in NFTNL_SET_DESC_CONCAT setter (Phil Sutter) [RHEL-28515]
- expr: fix buffer overflows in data value setters (Phil Sutter) [RHEL-28515]




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_aarch64_baseos_latest
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_aarch64_codeready_builder
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_aarch64_u4_baseos_patch
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_aarch64_u5_baseos_base
libnftnl-1.2.6-4.el9_4.aarch64.rpmb8e1994ea35074e8835817dbc78826fb1fb1c6304d52e5645bfcf98de92f26b5-ol9_aarch64_baseos_latest
libnftnl-1.2.6-4.el9_4.aarch64.rpmb8e1994ea35074e8835817dbc78826fb1fb1c6304d52e5645bfcf98de92f26b5-ol9_aarch64_u4_baseos_patch
libnftnl-1.2.6-4.el9_4.aarch64.rpmb8e1994ea35074e8835817dbc78826fb1fb1c6304d52e5645bfcf98de92f26b5-ol9_aarch64_u5_baseos_base
libnftnl-devel-1.2.6-4.el9_4.aarch64.rpm199e398b94bd400461b9094d6baac64d99393100d3f9412db1d5c12ce680882d-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_x86_64_baseos_latest
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_x86_64_codeready_builder
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_x86_64_u4_baseos_patch
libnftnl-1.2.6-4.el9_4.src.rpm64dc4ebf016c5819657e5cdffe167fc402d3fa6ce19ef26bea5730a4de3a9a9d-ol9_x86_64_u5_baseos_base
libnftnl-1.2.6-4.el9_4.i686.rpm1004778672c4bef124f01e16617ba9ac8c9aaadbc39246196fb53415b6d969cc-ol9_x86_64_baseos_latest
libnftnl-1.2.6-4.el9_4.i686.rpm1004778672c4bef124f01e16617ba9ac8c9aaadbc39246196fb53415b6d969cc-ol9_x86_64_u4_baseos_patch
libnftnl-1.2.6-4.el9_4.i686.rpm1004778672c4bef124f01e16617ba9ac8c9aaadbc39246196fb53415b6d969cc-ol9_x86_64_u5_baseos_base
libnftnl-1.2.6-4.el9_4.x86_64.rpm5e1832ef90360be403aaa93f84f4f6c72c695cf10088ee99512d23666d755b8e-ol9_x86_64_baseos_latest
libnftnl-1.2.6-4.el9_4.x86_64.rpm5e1832ef90360be403aaa93f84f4f6c72c695cf10088ee99512d23666d755b8e-ol9_x86_64_u4_baseos_patch
libnftnl-1.2.6-4.el9_4.x86_64.rpm5e1832ef90360be403aaa93f84f4f6c72c695cf10088ee99512d23666d755b8e-ol9_x86_64_u5_baseos_base
libnftnl-devel-1.2.6-4.el9_4.i686.rpm0b3a081f63de05d954fdc43976bf9f5264ee9558961c0940bf8c1c3ce90950be-ol9_x86_64_codeready_builder
libnftnl-devel-1.2.6-4.el9_4.x86_64.rpm6f53bb9a17e94d8cf281cd9f6b2f353909d885f5793d310dc1e50180cec23971-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete