Description: netfilter: nft_set_pipapo: skip inactive elements during set walk References: https://kernel.dance/317eb9685095678f2c9f5a8189de698c5354316a https://www.openwall.com/lists/oss-security/2023/12/22/6 Notes: carnil> Commit fixes 3c4287f62044 ("nf_tables: Add set type for carnil> arbitrary concatenation of ranges") in 5.6-rc1. carnil> For 6.6.y fixed as well in 6.6.7. Bugs: upstream: released (6.7-rc5) [317eb9685095678f2c9f5a8189de698c5354316a] 6.1-upstream-stable: released (6.1.68) [189c2a82933c67ad360c421258d5449f6647544a] 5.10-upstream-stable: released (5.10.204) [bf72b44fe81be08a9fcd58aabf417cd3337ffc99] 4.19-upstream-stable: N/A "Vulnerable code not present" sid: released (6.6.8-1) 6.1-bookworm-security: released (6.1.69-1) 5.10-bullseye-security: released (5.10.205-1) 4.19-buster-security: N/A "Vulnerable code not present"