netfilter: xt_CT: don't put back reference to timeout policy object
On success, this shouldn't put back the timeout policy object, otherwise we may have module refcount overflow and we allow deletion of timeout that are still in use. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
parent
a29a9a585b
commit
403d89ad9c
|
@ -171,6 +171,9 @@ xt_ct_set_timeout(struct nf_conn *ct, const struct xt_tgchk_param *par,
|
|||
if (timeout_ext == NULL)
|
||||
ret = -ENOMEM;
|
||||
|
||||
rcu_read_unlock();
|
||||
return ret;
|
||||
|
||||
err_put_timeout:
|
||||
__xt_ct_tg_timeout_put(timeout);
|
||||
out:
|
||||
|
|
Loading…
Reference in New Issue