8.8
CVSSv3

CVE-2021-28139

Published: 07/09/2021 Updated: 09/09/2021
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 740
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and previous versions does not properly restrict the Feature Page upon reception of an LMP Feature Response Extended packet, allowing attackers in radio range to trigger arbitrary code execution in ESP32 via a crafted Extended Features bitfield payload.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

espressif esp-idf