Researchers recently discovered a security vulnerability in the next-generation Internet Protocol IPv6, which may cause denial-of-service attacks to users.
It is reported that this vulnerability exists in the type 0 Routing Header (RH0) feature of IPv6. The OpenBSD and Cisco IOS systems have a denial of service vulnerability when processing some IPv6 type 0 Routing headers. If a specific IPv6 packet is sent to the device running the above system, the device may crash.
This week, industry experts have submitted two drafts to the Internet Engineering Task Team (IETF) to propose two measures to solve the problem, namely deleting the RH0 function, or at least this function is disabled by default.
It is reported that the vulnerability was initially discovered by researchers Philip Biondi and Arnaud Ebalard. The two said that the RH0 vulnerability was at least 80 times more likely to expose IPv6 devices to DoS attacks.
Internet Systems Consortium President Paul Vixie said: "This vulnerability makes things very bad. A teenage teenager can launch an attack through a $300 Linux PC ."