CVE-2021-34143

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/09/2021
Last modified:
14/09/2021

Description

The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C_DEMO_V1.0 does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (deadlock) of the device by flooding it with LMP_AU_Rand packets after paging procedure. User intervention is required to restart the device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:zh-jieli:fw-ac63_bt_sdk:1.0.0:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6936:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6951:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6952:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6954:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6955:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6956:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6963:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6965:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6966:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6969:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6973:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6976:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6983:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6986:-:*:*:*:*:*:*:*