IPv6 RA leak between VLANs

I have still a problem with ipv6 RA in wrong/all vlans on E8450. Offload is not related as it is disabled.
A (DSA) bridge br-lan with lan1-4 and some vlans br-lan.X is configured.
Every bridge interface has a unique MAC set and got a public ipv6 (or ULA!) and then odhcp (or dnsmasq-v6) sends RAs for every bridge-interface.
Now RAs for all existings MACs/LL-IPv6 are send to every Vlan. To force: service odhcpd restart.

IPtable logs show that the RAs exit the device on the correct br-lan.X interface - but tcpdump on a host on the lan sees all RAs - and with SLAAC it get s many IPv6s of which only 1 works
I'm not sure if this is a problem of DSA or IPv6. As IPv6 also does not work with sw-offloading it could be IPv6