Commit 19297c3a authored by Johannes Nixdorf's avatar Johannes Nixdorf Committed by Jakub Kicinski
Browse files

net: bridge: Set strict_start_type for br_policy



Set any new attributes added to br_policy to be parsed strictly, to
prevent userspace from passing garbage.

Signed-off-by: default avatarJohannes Nixdorf <jnixdorf-oss@avm.de>
Acked-by: default avatarNikolay Aleksandrov <razor@blackwall.org>
Reviewed-by: default avatarIdo Schimmel <idosch@nvidia.com>
Link: https://lore.kernel.org/r/20231016-fdb_limit-v5-4-32cddff87758@avm.de


Signed-off-by: default avatarJakub Kicinski <kuba@kernel.org>
parent ddd1ad68
Loading
Loading
Loading
Loading
+2 −0
Original line number Diff line number Diff line
@@ -1229,6 +1229,8 @@ static size_t br_port_get_slave_size(const struct net_device *brdev,
}

static const struct nla_policy br_policy[IFLA_BR_MAX + 1] = {
	[IFLA_BR_UNSPEC]	= { .strict_start_type =
				    IFLA_BR_FDB_N_LEARNED },
	[IFLA_BR_FORWARD_DELAY]	= { .type = NLA_U32 },
	[IFLA_BR_HELLO_TIME]	= { .type = NLA_U32 },
	[IFLA_BR_MAX_AGE]	= { .type = NLA_U32 },