On 1/18/21 10:34 AM, Edwin Peer wrote: > On Sun, Jan 17, 2021 at 7:48 PM David Ahern <dsah...@gmail.com> wrote: > >> IMHO this is a kernel bug that should be fixed. An easy fix to check the >> overflow in nla_nest_end and return an error. Sadly, nla_nest_end return >> code is ignored and backporting any change to fix that will be >> nightmare. A warning will identify places that need to be fixed. > > Assuming we fix nla_nest_end() and error in some way, how does that > assist iproute2? >
I don't follow. The kernel is sending a malformed message; userspace should not be guessing at how to interpret it.