Unlimited WordPress themes, plugins & video downloads!

Research

Research – Security Implications Of IPv6 Options Of Type 10xxxxxx Revision 01

When an IPv6 node processing an IPv6 packet does not support an IPv6 option whose two-highest-order bits of the Option Type are ’10’, it is required to respond with an ICMPv6 Parameter Problem error message, even if the Destination Address of the packet was a multicast address. This feature provides an amplification vector, opening the door to an IPv6 version of the ‘Smurf’ Denial-of-Service (DoS) attack found in IPv4 networks. This document discusses the security implications of the aforementioned options, and formally updates RFC 2460 such that this attack vector is eliminated. Additionally, it describes a number of operational mitigations that could be deployed against this attack vector.

 

You can download it from the following link: https://packetstormsecurity.com/files/download/119654/draft-gont-6man-ipv6-smurf-amplifier-01.txt

Source: https://packetstormsecurity.com/files/119654/Security-Implications-Of-IPv6-Options-Of-Type-10xxxxxx-Revision-01.html

Related posts
Research

Research - 07103-00013C_FT5KUsrMan-3.0_file.pdf

Research

Research - 2013 Data Protection Maturity Survey Results

Research

Research - 64 Bits Linux Stack Based Buffer Overflow

Research

Research - A Newbies Guide To The Underground Volume 2

Sign up for our Newsletter and
stay informed