Slashdot Mirror


OpenBSD Vulnerabilty

*no comment* writes "Normally vulnerability reports on slashdot wouldn't make it because there are so many. This one however is for the normally very secure OpenBSD. Someone can crash an OpenBSD bridge using a newly discovered ICMP exploit. More can be read here. This shouldn't affect most people as this only affects people that use OBSD as a bridge."

3 of 55 comments (clear)

  1. Re:Can't get to openbsd.org by gatorade123 · · Score: 5, Informative

    The quote is "Only one remote hole in the default install, in more than 8 years!"

    This exploit is only possible when you have bridging configured, which is not part of a default install, nor most common installations.

  2. Re:Why'zit a 'Reliability' fix, not a 'Security' f by shiftyphil · · Score: 5, Informative

    Because the worst you can do with it is crash the system, not gain access.

  3. Re:Can't get to openbsd.org by Anonymous Coward · · Score: 5, Informative

    You have to have a bridge setup *AND* enable the special IPsec processing support on the bridge which means *very few* people would be affected by this issue.