Commits
Dmitry Mishin authored and Pavel Emelianov committed df3e9cfecf0
[NETFILTER] Fix of iptables checks Issue found by Patrick McHardy. After checks reordering target and matches checks that they could be used for this hook returns true always due to not initialized e->comefrom field. So, order restored, necessary checks moved in mark_source_chains(). For compats this issue exists from the beginning.