Rare flaw sighted in OpenBSD kernel
Thar she overflows
Posted in Software & Security, 15th March 2007 11:23 GMT
Free whitepaper – Managing desktop software for fun and profit
Security researchers have discovered a critical flaw in the OpenBSD kernel.
The rare vulnerability - only the second severe kernel bug in the history of the development of OpenBSD - involves a flaw in OpenBSD's IPv6 stack that potentially lends itself to remote exploitation by hackers. Fortunately, source code patches are available for OpenBSD 3.9 and 4.0.
Applying the patches involves recompiling the kernel and rebooting affected machines. If applying these updates isn't immediately convenient, workarounds involve disabling IPv6 traffic (as explained here).
Credit for discovering the flaw goes to security researchers at Core Security, whose well-documented advisory, which includes proof of concept code, can be found here). ®
Free whitepaper – Straight Talk with Dell: Sending out an SaaS
Analyst Keynote: The Register Agile Data Center Summit
Dell PowerEdge M710 with Dell EqualLogic storage vs. HP ProLiant BL685c with HP StorageWorks EVA 4400
Seven ways to optimize VMware server virtualization

Sign up, sign up for The Register IT security newsletter
Microsoft's Windows 7 price gamble - and why it's flawed
Managing Desktop Software for fun and profit
Intel's flash new SSDs hit by bugs