CVE-2021-34146
BRAKTOOTH: Causing Havoc on Bluetooth Link Manager
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and restart (crash) of the device by flooding it with LMP_AU_Rand packets after the paging procedure.
Una implementación de Bluetooth Classic en el Cypress CYW920735Q60EVB no maneja apropiadamente la recepción de respuestas LMP continuas no solicitadas, permitiendo a atacantes en el rango de radio desencadenar una denegación de servicio y reinicio (crash) del dispositivo al inundarlo con paquetes LMP_AU_Rand después del procedimiento de paginación
This whitepaper discusses BRAKTOOTH, a family of new security vulnerabilities in commercial BT stacks that range from denial of service (DoS) via firmware crashes and deadlocks in commodity hardware to arbitrary code execution (ACE) in certain IoTs.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-06-07 CVE Reserved
- 2021-09-03 CVE Published
- 2024-08-04 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://dl.packetstormsecurity.net/papers/general/braktooth.pdf | Technical Description |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cypress Search vendor "Cypress" | Cyw920735q60evb-01 Firmware Search vendor "Cypress" for product "Cyw920735q60evb-01 Firmware" | - | - |
Affected
| in | Cypress Search vendor "Cypress" | Cyw920735q60evb-01 Search vendor "Cypress" for product "Cyw920735q60evb-01" | - | - |
Safe
|
Cypress Search vendor "Cypress" | Cyw20735b1 Firmware Search vendor "Cypress" for product "Cyw20735b1 Firmware" | - | - |
Affected
| in | Cypress Search vendor "Cypress" | Cyw20735b1 Search vendor "Cypress" for product "Cyw20735b1" | - | - |
Safe
|