IPv6 and security: news from the front – December
Conferences
Enno Rey gave a presentation at the conference ACSAC : Design & Configuration of IPv6 Segments with High Security Requirements. His presentation is similar to the one he gave at the Troopers conference last March. He provides elements to consider when designing and configuring an IPv6 network with strong security constraints: protection against NCE attacks, against... rogues RA, etc.
Vulnerabilities
A vulnerability (CVSS Base = 4.7) affecting the Linux kernel's fib6_add functionality has been discovered. It allows a local user with certain privileges to do crasher the OS (CVE-2013-6431).
