netfilter: nf_tables: disallow timeout for anonymous sets

commit e26d3009efda338f19016df4175f354a9bd0a4ab upstream.

Never used from userspace, disallow these parameters.

BUG=b/333614753
TEST=presubmit
RELEASE_NOTE=Fixed CVE-2023-52620 in Linux kernel.

cos-patch: security-moderate
Change-Id: I3177966e4962385da8f9298455dc46c1f86771e9
Signed-off-by: Pablo Neira Ayuso <[email protected]>
Signed-off-by: Greg Kroah-Hartman <[email protected]>
Reviewed-on: https://cos-review.googlesource.com/c/third_party/kernel/+/70972
Tested-by: Cusky Presubmit Bot <[email protected]>
Reviewed-by: Anil Altinay <[email protected]>
1 file changed