• [^] # Re: "si vous utilisez IPv6"

    Posté par . En réponse au journal Un exploit pour OpenBSD. Évalué à 5.

    Sauf que
    OpenBSD systems using default installations are vulnerable because the
    default pre-compiled kernel binary (GENERIC) has IPv6 enabled and
    OpenBSD's firewall does not filter inbound IPv6 packets in its default
    configuration.
    However, in order to exploit a vulnerable system an attacker needs to
    be able to inject fragmented IPv6 packets on the target system's local
    network. This requires direct physical/logical access to the target's
    local network -in which case the attacking system does not need to have
    a working IPv6 stack- or the ability to route or tunnel IPv6 packets to
    the target from a remote network.


    Donc bon il y a un vrai risque pour certains.