A security vulnerability was found in the next-generation Internet Protocol IPv6, which may cause denial-of-service attacks.
It is reported that this vulnerability exists in the type 0 Routing Header RH0 feature of IPv6.
The OpenBSD and Cisco IOS systems have a denial of service vulnerability when processing some IPv6 type 0 Routing headers. If a specific IPv6 packet is sent to the device running the above system, the device may crash.
This week, industry experts have submitted two drafts to the Internet Engineering Task Team IETF to propose two measures to solve the problem, namely deleting the RH0 function or at least disabling it by default.
It is reported that the vulnerability was initially discovered by researchers Philip Biondi and Arnaud Ebalard. The two said that the RH0 vulnerability was at least 80 times more likely to expose IPv6 devices to DoS attacks.
Internet Systems Consortium President Paul Vixie said: "This vulnerability makes things very bad. A teenage teenager can launch an attack through a $300 Linux PC ."
Related Articles]
- Hou Ziqiang said that IPV6 has almost no actual traffic of 100 MB
- China has initially built the world's largest IPv6 network for use in next year's Olympic Games
- IPv6 network management difficulties