Apple fixes broken IPv6 by breaking it some more
arstechnica.com
arstechnica.com
While they (generally) aren't an initial attack vector, they are easily and often used by attackers that have knowledge of MAC addresses ahead of time, to hide traffic in plain site after an intrusion, or to hijack traffic in one hop away scenarios. Look at any non-automated intrusions coming out of asia and you'll see 6 encapsulation in use two out of three times at least.
Unless the user has turned on these tools intentionally, or is operating in a legitimate native v6 environment, OS's should never pick 6 first if both endpoints can complete the route with 4.