Re: [PATCH net v2] seg6: fix HMAC validation when an extension header precedes the SRH

From: patchwork-bot+netdevbpf

Date: Thu Oct 01 2026 - 07:26:10 EST


Hello:

This patch was applied to netdev/net-next.git (main)
by Paolo Abeni <pabeni@xxxxxxxxxx>:

On Sat, 26 Sep 2026 20:19:27 +0900 you wrote:
> seg6_hmac_validate_skb() derived the SRH from skb_transport_header().
> That only holds while the two coincide, which is not true on the
> seg6_local input path.
>
> ip6_rcv_core() leaves the transport header just past the IPv6 header.
> A Hop-by-Hop options header is consumed before the route lookup and
> advances it, but a Destination Options header is not: the seg6_local
> lwtunnel is entered through an input redirect from the route lookup,
> which bypasses the extension header handlers. The transport header
> then still points at the Destination Options header while
> seg6_get_srh() has located the real SRH further down the chain.
>
> [...]

Here is the summary with links:
- [net,v2] seg6: fix HMAC validation when an extension header precedes the SRH
https://git.kernel.org/netdev/net-next/c/f9cb4d296d81

You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html