CVE-2025-21768

net: ipv6: fix dst ref loops in rpl, seg6 and ioam6 lwtunnels

References

Notes

 carnil> Introduced in 8cb3bf8bff3c ("ipv6: ioam: Add support for the ip6ip6
 carnil> encapsulation")
 carnil> 6c8702c60b88 ("ipv6: sr: add support for SRH encapsulation and injection with
 carnil> lwtunnels")
 carnil> a7a29f9c361f ("net: ipv6: add rpl sr tunnel"). Vulnerable versions: 4.10-rc1.

Bugs

Status

Branch Status
upstream released (6.14-rc2) [92191dd1073088753821b862b791dcc83e558e07]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable released (6.13.4) [4c0f200c7d06fedddde82209c099014d63f4a6c0]
6.12-upstream-stable released (6.12.16) [5ab11a4e219e93b8b31a27f8ec98d42afadd8b7a]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.12.16-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed