RHSA-2016:1086-01 -- Redhat libndpID: oval:org.secpod.oval:def:501828 | Date: (C)2016-05-20 (M)2023-12-20 |
Class: PATCH | Family: unix |
Libndp is a library that provides a wrapper for the IPv6 Neighbor Discovery Protocol. It also provides a tool named ndptool for sending and receiving NDP messages. Security Fix: * It was found that libndp did not properly validate and check the origin of Neighbor Discovery Protocol messages. An attacker on a non-local network could use this flaw to advertise a node as a router, allowing them to perform man-in-the-middle attacks on a connecting client, or disrupt the network connectivity of that client. Red Hat would like to thank Julien Bernard for reporting this issue.
Platform: |
Red Hat Enterprise Linux 7 |