The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (crash) in ESP32 by flooding the target device with LMP Feature Response data.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-09-07T05:56:29

Updated: 2021-09-07T05:56:29

Reserved: 2021-03-11T00:00:00


Link: CVE-2021-28135

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-07T06:15:07.230

Modified: 2022-07-12T17:42:04.277


Link: CVE-2021-28135

JSON object: View

cve-icon Redhat Information

No data.