IPv6 and security: news from the front – May
New publications
Reliable & Secure DHCPv6, by Enno Rey, presentation given at the IPv6 Security Summit conference
During this presentation, Enno Rey briefly reviews the specifics of DHCPv6 and the differences with DHCPv4. He then goes on to discuss the impact of these changes on network operation and security.
New tools
IPv6 Toolkit by Fernando Gont, version 2.0 (Guille)
At the IPv6 Security Summit held last March alongside the Troopers conference, Fernando Gont presented the new version of the IPv6 Toolkit. This latest version integrates new tools such as script6 and path6, and fixes some serious bugs related to packet reading and next-hop determination, among other things. changelog contains all the changes made to this new version.
New vulnerabilities
CVE-2015-0711 (Cisco StarOS for Cisco ASR 5000 Series HAMGR Service Proxy Mobile IPv6 Processing Denial of Service Vulnerability)
- Affected product: Cisco ASR 5000
- Impact: Remote denial of service (CVSS Base Score = 5.0)
CVE-2015-0708 (Cisco IOS Software and Cisco IOS XE Software Crafted DHCPv6 Sequence Denial of Service Vulnerability)
- Affected product: Cisco IOS XE Software
- Impact: Remote denial of service (CVSS Base Score = 6.1)
