
By Jordan Wiens
Excerpt:
"It turns out that a relatively straightforward vulnerability in the IPv6 packet handling handling exposes any OpenBSD (well, versions 3.1, 3.6, 3.8, 3.9, 4.0 Stable and Current, and OpenBSD 4.1 prior to Feb. 26th, 2006) machine on an IPv6 routed network. Even when deployed on an IPv4 only network, the IPv6 interface is enabled by default and would still be available on the local subnet, though this does mitigate the risk of the vulnerability somewhat. Core Security Technologies found the vulnerability and worked together with the OpenBSD team …"
Source: Network Computing











