This patch should fix the IPsec related problem described in the DEFCON-25-Ilja-van-Sprundel-BSD-Kern-Vulns.pdf
Actually, this IP[V6]_IPSEC_POLICY socket option is available only for privileged user, and when you are root user, you have many much easiest ways to crash the system. But anyway it is better to fix it.