6.5

CVE-2021-34144

The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C BT SDK through 0.9.1 does not properly handle the reception of truncated LMP_SCO_Link_Request packets while no other BT connections are active, allowing attackers in radio range to prevent new BT connections (disabling the AB5301A inquiry and page scan procedures) via a crafted LMP packet. The user needs to manually perform a power cycle (restart) of the device to restore BT connectivity.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zh-jieli ≫ Fw-ac63 Bt Sdk Version <= 0.9.1
   Zh-jieli ≫ Ac6936 Version -
   Zh-jieli ≫ Ac6951 Version -
   Zh-jieli ≫ Ac6952 Version -
   Zh-jieli ≫ Ac6954 Version -
   Zh-jieli ≫ Ac6955 Version -
   Zh-jieli ≫ Ac6956 Version -
   Zh-jieli ≫ Ac6963 Version -
   Zh-jieli ≫ Ac6965 Version -
   Zh-jieli ≫ Ac6966 Version -
   Zh-jieli ≫ Ac6969 Version -
   Zh-jieli ≫ Ac6973 Version -
   Zh-jieli ≫ Ac6976 Version -
   Zh-jieli ≫ Ac6983 Version -
   Zh-jieli ≫ Ac6986 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.69% 0.482
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
NIST 3.3 6.5 2.9
AV:A/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://dl.packetstormsecurity.net/papers/general/braktooth.pdf
Third Party Advisory
Technical Description
https://github.com/Jieli-Tech/fw-AC63_BT_SDK
Third Party Advisory
https://launchstudio.bluetooth.com/ListingDetails/91371
Third Party Advisory