diff options
Diffstat (limited to 'kernel/linux/net/bridge/netfilter/ebt_snat.c')
-rw-r--r-- | kernel/linux/net/bridge/netfilter/ebt_snat.c | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/kernel/linux/net/bridge/netfilter/ebt_snat.c b/kernel/linux/net/bridge/netfilter/ebt_snat.c index aaaa7f0..5b2554e 100644 --- a/kernel/linux/net/bridge/netfilter/ebt_snat.c +++ b/kernel/linux/net/bridge/netfilter/ebt_snat.c @@ -31,6 +31,10 @@ static int ebt_target_snat_check(const char *tablename, unsigned int hookmask, { struct ebt_nat_info *infostuff = (struct ebt_nat_info *) data; + if ((hookmask & (1 << NF_BR_NUMHOOKS)) && + infostuff->target == EBT_RETURN) + return -EINVAL; + hookmask &= ~(1 << NF_BR_NUMHOOKS); if (strcmp(tablename, "nat")) return -EINVAL; if (datalen != sizeof(struct ebt_nat_info)) |