2.9
CVSSv2

CVE-2021-31615

Published: 25/06/2021 Updated: 12/07/2022
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 259
Vector: AV:A/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 up to and including 5.2 may permit an adjacent device to inject a crafted packet during the receive window of the listening device before the transmitting device initiates its packet transmission to achieve full MITM status without terminating the link. When applied against devices establishing or using encrypted links, crafted packets may be used to terminate an existing link, but will not compromise the confidentiality or integrity of the link.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

bluetooth bluetooth core specification

Vendor Advisories

Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 40 through 52 may permit an adjacent device to inject a crafted packet during the receive window of the listening device before the transmitting device initiates its packet transmission to achieve full MITM status without terminating the link When applied against de ...
Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 40 through 52 may permit an adjacent device to inject a crafted packet during the receive window of the listening device before the transmitting device initiates its packet transmission to achieve full MITM status without terminating the link When applied against de ...