{
        switch (len) {
        case 2:
-               data->val16 = ntohs(*((u16 *)val));
+               data->val16 = ntohs(*((__be16 *)val));
                break;
        case 4:
-               data->val32 = ntohl(*((u32 *)val));
+               data->val32 = ntohl(*((__be32 *)val));
                break;
        case 8:
-               data->val64 = be64_to_cpu(*((u64 *)val));
+               data->val64 = be64_to_cpu(*((__be64 *)val));
                break;
        default:
                WARN_ON_ONCE(1);
 
        case NFT_CT_SRC_IP:
                if (nf_ct_l3num(ct) != NFPROTO_IPV4)
                        goto err;
-               *dest = tuple->src.u3.ip;
+               *dest = (__force __u32)tuple->src.u3.ip;
                return;
        case NFT_CT_DST_IP:
                if (nf_ct_l3num(ct) != NFPROTO_IPV4)
                        goto err;
-               *dest = tuple->dst.u3.ip;
+               *dest = (__force __u32)tuple->dst.u3.ip;
                return;
        case NFT_CT_SRC_IP6:
                if (nf_ct_l3num(ct) != NFPROTO_IPV6)
 
 
                switch (priv->len) {
                case 2:
-                       old.v16 = get_unaligned((u16 *)(opt + offset));
+                       old.v16 = (__force __be16)get_unaligned((u16 *)(opt + offset));
                        new.v16 = (__force __be16)nft_reg_load16(
                                ®s->data[priv->sreg]);
 
                        if (old.v16 == new.v16)
                                return;
 
-                       put_unaligned(new.v16, (u16*)(opt + offset));
+                       put_unaligned(new.v16, (__be16*)(opt + offset));
                        inet_proto_csum_replace2(&tcph->check, pkt->skb,
                                                 old.v16, new.v16, false);
                        break;
                case 4:
-                       new.v32 = regs->data[priv->sreg];
-                       old.v32 = get_unaligned((u32 *)(opt + offset));
+                       new.v32 = nft_reg_load_be32(®s->data[priv->sreg]);
+                       old.v32 = (__force __be32)get_unaligned((u32 *)(opt + offset));
 
                        if (old.v32 == new.v32)
                                return;
 
-                       put_unaligned(new.v32, (u32*)(opt + offset));
+                       put_unaligned(new.v32, (__be32*)(opt + offset));
                        inet_proto_csum_replace4(&tcph->check, pkt->skb,
                                                 old.v32, new.v32, false);
                        break;
 
                                    struct ip_tunnel_info *info,
                                    struct nft_tunnel_opts *opts)
 {
-       int err, rem, type = 0;
        struct nlattr *nla;
+       __be16 type = 0;
+       int err, rem;
 
        err = nla_validate_nested_deprecated(attr, NFTA_TUNNEL_KEY_OPTS_MAX,
                                             nft_tunnel_opts_policy, NULL);