6.1
CVSSv2

CVE-2021-31785

Published: 07/09/2021 Updated: 03/05/2022
CVSS v2 Base Score: 6.1 | Impact Score: 6.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 544
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The Bluetooth Classic implementation on Actions ATS2815 and ATS2819 chipsets does not properly handle the reception of multiple LMP_host_connection_req packets, allowing attackers in radio range to trigger a denial of service (deadlock) of the device via crafted LMP packets. Manual user intervention is required to restart the device and restore Bluetooth communication.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

actions-semi ats2819p_firmware -

actions-semi ats2815_firmware -

actions-semi ats2819_firmware -

actions-semi ats2819s_firmware -

actions-semi ats2819t_firmware -