netfilter: Enable NFT_DUP_IPV4, NFT_DUP_IPV6 as modules (Closes: #803370)

(cherry picked from commit dc44f47681)
This commit is contained in:
Ben Hutchings 2015-10-29 21:27:05 +00:00
parent 4668d13b75
commit a1af31e139
2 changed files with 3 additions and 0 deletions

1
debian/changelog vendored
View File

@ -17,6 +17,7 @@ linux (4.2.6-2) UNRELEASED; urgency=medium
* ppp, slip: Validate VJ compression slot parameters completely
(CVE-2015-7799)
* Btrfs: fix truncation of compressed and inlined extents (CVE-2015-8374)
* netfilter: Enable NFT_DUP_IPV4, NFT_DUP_IPV6 as modules (Closes: #803370)
-- Salvatore Bonaccorso <carnil@debian.org> Tue, 10 Nov 2015 22:05:58 +0100

View File

@ -5803,6 +5803,7 @@ CONFIG_NF_CONNTRACK_IPV4=m
CONFIG_NF_CONNTRACK_PROC_COMPAT=y
CONFIG_NF_TABLES_IPV4=m
CONFIG_NFT_CHAIN_ROUTE_IPV4=m
CONFIG_NFT_DUP_IPV4=m
CONFIG_NF_TABLES_ARP=m
CONFIG_NF_LOG_ARP=m
CONFIG_NF_LOG_IPV4=m
@ -5864,6 +5865,7 @@ CONFIG_IPV6_PIMSM_V2=y
CONFIG_NF_CONNTRACK_IPV6=m
CONFIG_NF_TABLES_IPV6=m
CONFIG_NFT_CHAIN_ROUTE_IPV6=m
CONFIG_NFT_DUP_IPV6=m
CONFIG_NF_REJECT_IPV6=m
CONFIG_NF_LOG_IPV6=m
CONFIG_NF_NAT_IPV6=m