Flaw in System could Crash Linux Systems
Researchers have discovered a critical flaw in Systemd which can be exploited by attackers to crash a Linux system. The vulnerability (CVE-2018-15688) was discovered by security researcher Felix Wilhelm of the Google security team and said that the flaw resides in the DHCPv6 client of the open-source Systemd management suite. “systemd-networkd contains a DHCPv6 client which is written from scratch and can be spawned automatically on managed interfaces when IPv6 router advertisement are received” said in the post published by Researchers. The attackers can exploit the vulnerability using a malicious crafted DHCPv6 packet and change parts memory in vulnerable systems, making it vulnerable to remote code execution. Source:Google Image The DHCPv6 client is automatically activated if the IPv6 support is enabled and start packets arrive for processing. A rogue DHCPv6 server on a network, or in an ISP can wake up DHCPv6 clients by sending specially craft...