netfilter: nf_tables: do not compare internal table flags on updates
[ Upstream commit 4a0e7f2decbf9bd72461226f1f5f7dcc4b08f139 ]
Restore skipping transaction if table update does not modify flags.
Fixes: 179d9ba5559a ("netfilter: nf_tables: fix table flag updates")
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
This commit is contained in:
parent
71002d9eb1
commit
2531f907d3
1 changed files with 1 additions and 1 deletions
|
|
@ -916,7 +916,7 @@ static int nf_tables_updtable(struct nft_ctx *ctx)
|
|||
if (flags & ~NFT_TABLE_F_DORMANT)
|
||||
return -EINVAL;
|
||||
|
||||
if (flags == ctx->table->flags)
|
||||
if (flags == (ctx->table->flags & NFT_TABLE_F_MASK))
|
||||
return 0;
|
||||
|
||||
/* No dormant off/on/off/on games in single transaction */
|
||||
|
|
|
|||
Loading…
Add table
Reference in a new issue