// For flags

CVE-2021-31785

 

Severity Score

6.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Bluetooth Classic implementation on Actions ATS2815 and ATS2819 chipsets does not properly handle the reception of multiple LMP_host_connection_req packets, allowing attackers in radio range to trigger a denial of service (deadlock) of the device via crafted LMP packets. Manual user intervention is required to restart the device and restore Bluetooth communication.

Una implementación de Bluetooth Classic en los conjuntos de chips Actions ATS2815 y ATS2819, no maneja apropiadamente la recepción de múltiples paquetes LMP_host_connection_req, permitiendo a atacantes en el rango de radio desencadenar una denegación de servicio (bloqueo) del dispositivo por medio de paquetes LMP diseñados. Es requerida una intervención manual del usuario para reiniciar el dispositivo y restaurar la comunicación Bluetooth

*Credits: N/A
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Adjacent
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-04-23 CVE Reserved
  • 2021-09-03 CVE Published
  • 2024-05-23 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-667: Improper Locking
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Actions-semi
Search vendor "Actions-semi"
Ats2819p Firmware
Search vendor "Actions-semi" for product "Ats2819p Firmware"
--
Affected
in Actions-semi
Search vendor "Actions-semi"
Ats2819p
Search vendor "Actions-semi" for product "Ats2819p"
--
Safe
Actions-semi
Search vendor "Actions-semi"
Ats2815 Firmware
Search vendor "Actions-semi" for product "Ats2815 Firmware"
--
Affected
in Actions-semi
Search vendor "Actions-semi"
Ats2815
Search vendor "Actions-semi" for product "Ats2815"
--
Safe
Actions-semi
Search vendor "Actions-semi"
Ats2819 Firmware
Search vendor "Actions-semi" for product "Ats2819 Firmware"
--
Affected
in Actions-semi
Search vendor "Actions-semi"
Ats2819
Search vendor "Actions-semi" for product "Ats2819"
--
Safe
Actions-semi
Search vendor "Actions-semi"
Ats2819s Firmware
Search vendor "Actions-semi" for product "Ats2819s Firmware"
--
Affected
in Actions-semi
Search vendor "Actions-semi"
Ats2819s
Search vendor "Actions-semi" for product "Ats2819s"
--
Safe
Actions-semi
Search vendor "Actions-semi"
Ats2819t Firmware
Search vendor "Actions-semi" for product "Ats2819t Firmware"
--
Affected
in Actions-semi
Search vendor "Actions-semi"
Ats2819t
Search vendor "Actions-semi" for product "Ats2819t"
--
Safe