Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Experts scramble to quash IPv6 flaw
Robert Lemos, SecurityFocus 2007-05-09

A flawed feature that could amplify denial-of-service attacks on next-generation networks has vendors and engineers rushing to eliminate the potential security issue.

Comments Mode:
Experts scramble to quash IPv6 flaw 2007-05-10
Yes, serious (1 replies)
IPv6 - just say no.

There still be bugs in there......

[ more ]  [ reply ]
thats silly 2007-05-10
jesse
"IPv6 - just say no... there still be bugss..

You can say the same thing about IPv4.

And CERTAINLY say that about MS implementations of almost anything...

[ more ]  [ reply ]
Experts scramble to quash IPv6 flaw 2007-05-10
Anonymouse (1 replies)
So many witty comments...

Since much of Asia has moved to IPv6, can we DoS them back to IPv4? (That'll learn them to upgrade technology.)

At least IPv6 will be secure! (Let's forget that IPv6's IPsec is available but not activated or safe from man-in-middle attacks unless point-to-point secu...

[ more ]  [ reply ]
out of IP v4... 2007-05-18
Anonymous
Actually, yes we are out.

Just try getting 8 IP numbers (one subnetted class C) external to any ISP to allow for mobility among different service providers....

[ more ]  [ reply ]
Experts scramble to quash IPv6 flaw 2007-05-12
Anonymous (1 replies)
"It can be exploited by any greedy Estonian teenager with a $300 Linux machine." WTF?? I demand an explanation from this twat, why is he slandering my country?...

[ more ]  [ reply ]
Re: Experts scramble to quash IPv6 flaw 2007-05-15
Anonymouse
And is that $300 US or $300 Estonian Krooni (EEK)?

$300 US is about $3462 EEK.

With $300 EEK is about $25 USD.

(http://coinmill.com/EEK_USD.html)

You certainly cannot buy a computer for $25 USD.

And computers in Estonia cost more than $3462 EEK....

[ more ]  [ reply ]
Not so new, and not unexpected. 2007-05-16
support (at) securesoftware (dot) ca [email concealed]
Although this particular way to exploit the RH0 feature is new, the security issues related to the RH0 feature are not new and have been known almost from the first day this feature was added to the IPv6 specification.

One of the reasons this feature is in the IPv6 specifications is to enable Sou...

[ more ]  [ reply ]







 

Privacy Statement
Copyright 2009, SecurityFocus