OpenBSD systems using default installations are vulnerable because the
default pre-compiled kernel binary (GENERIC) has IPv6 enabled and
OpenBSD's firewall does not filter inbound IPv6 packets in its default
configuration.
However, in order to exploit a vulnerable system an attacker needs to
be able to inject fragmented IPv6 packets on the target system's local
network. This requires direct physical/logical access to the target's
local network -in which case the attacking system does not need to have
a working IPv6 stack- or the ability to route or tunnel IPv6 packets to
the target from a remote network.
[^] # Re: "si vous utilisez IPv6"
Posté par benja . En réponse au journal Un exploit pour OpenBSD. Évalué à 5.
Donc bon il y a un vrai risque pour certains.