Vulnerability Bulletins

DSA-3581 libndp - security update

   
Affected software Debian
 
Julien Bernard discovered that libndp, a library for the IPv6 NeighborDiscovery Protocol, does not properly perform input and origin checksduring the reception of a NDP message. An attacker in a non-localnetwork could use this flaw to advertise a node as a router, and cause adenial of service attack, or act as a man-in-the-middle.

More info:

https://www.debian.org/security/2016/dsa-3581