CVE-2025-21629

net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets

References

Notes

 carnil> Introduced in 04c20a9356f2 ("net: skip offload for NETIF_F_IPV6_CSUM if ipv6
 carnil> header contains extension"). Vulnerable versions: 4.19.323 5.4.285 5.10.229
 carnil> 5.15.171 6.1.116 6.6.60 6.11.7 6.12-rc6.

Bugs

Status

Branch Status
upstream released (6.13-rc6) [68e068cabd2c6c533ef934c2e5151609cf6ecc6d]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable released (6.12.9) [d3b7a9c7597b779039a51d7b34116fbe424bf2b7]
6.6-upstream-stable released (6.6.70) [95ccf006bbc8b59044313b8c309dcf29c546abd4]
6.1-upstream-stable released (6.1.124) [ac9cfef69565021c9e1022a493a9c40b03e2caf9]
5.10-upstream-stable needed
sid released (6.12.9-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.124-1)
5.10-bullseye-security needed