In the Linux kernel, the following vulnerability has been resolved: net: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM When performing Generic Segmentation Offload (GSO) on an…
High CVSS 7.5
Summary
In the Linux kernel, the following vulnerability has been resolved: net: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM When performing Generic Segmentation Offload (GSO) on an IPv6 packet that contains extension headers, the kernel incorrectly requests checksum offload if the egress device only advertises NETIF_F_IPV6_CSUM feature, which has a strict contract: it supports checksum offload only for plain TCP or UDP over IPv6 and explicitly does not support packets with ex…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/041e2f945f82fdbd6fff577b79c33469430297aa Patch
- https://git.kernel.org/stable/c/2156d9e9f2e483c8c3906c0ea57ea312c1424235 Patch
- https://git.kernel.org/stable/c/794ddbb7b63b6828c75967b9bcd43b086716e7a1 Patch
- https://git.kernel.org/stable/c/864e3396976ef41de6cc7bc366276bf4e084fff2 Patch
- https://git.kernel.org/stable/c/a0478d7e888028f85fa7785ea838ce0ca09398e2 Patch
- https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html Third Party Advisory
- https://cert-portal.siemens.com/productcert/html/ssa-019113.html
- https://cert-portal.siemens.com/productcert/html/ssa-032379.html
- https://cert-portal.siemens.com/productcert/html/ssa-082556.html
Timeline
- nvd_ingest NVD