I wonder where you heard that from. Before going crazy, refer to the documantation at
iptables.org, and you'll get to know how it is -- most definitely it's not going to crash just like that.
If I remember correctly, you were able to do fun stuff with fragmented packets using iptables..can't remember everything, but it's told at iptables.org and possibly using Google you can get more information (but remember that not everything is true that's written on the net).
If iptables was made to crash when encountering a fragmented ip package, what was the idea behind it? Make people go nuts?
Sounds like you've been fooled.
Not saying that you
can't do ugly stuff with iptables using fragmented packages (or anything else), just that in an ordinary situation it's not happening. It has to be intended, and if somebody intends to do something, it's virtually not impossible no matter what it was.