summaryrefslogtreecommitdiffstats
path: root/iptables/xtables.c
diff options
context:
space:
mode:
authorPhil Sutter <phil@nwl.cc>2020-05-05 19:36:13 +0200
committerPhil Sutter <phil@nwl.cc>2020-05-11 14:28:29 +0200
commit381b5569eb256e13346cff902d6ceed42cb441ad (patch)
tree8ee3df5933b5ca75799eb83376b9e0df690a4cc4 /iptables/xtables.c
parent7db4333dc0b6cd8e943fab78d6dab40ff9f4512e (diff)
nft: Use clear_cs() instead of open coding
In a few places, initialized struct iptables_command_state was not fully deinitialized. Change them to call nft_clear_iptables_command_state() which does it properly. Signed-off-by: Phil Sutter <phil@nwl.cc>
Diffstat (limited to 'iptables/xtables.c')
-rw-r--r--iptables/xtables.c6
1 files changed, 1 insertions, 5 deletions
diff --git a/iptables/xtables.c b/iptables/xtables.c
index c180af13..63a37ae8 100644
--- a/iptables/xtables.c
+++ b/iptables/xtables.c
@@ -1138,11 +1138,7 @@ int do_commandx(struct nft_handle *h, int argc, char *argv[], char **table,
*table = p.table;
- xtables_rule_matches_free(&cs.matches);
- if (cs.target) {
- free(cs.target->t);
- cs.target->t = NULL;
- }
+ nft_clear_iptables_command_state(&cs);
if (h->family == AF_INET) {
free(args.s.addr.v4);