CVE-2021-34144

The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C BT SDK through 0.9.1 does not properly handle the reception of truncated LMP_SCO_Link_Request packets while no other BT connections are active, allowing attackers in radio range to prevent new BT connections (disabling the AB5301A inquiry and page scan procedures) via a crafted LMP packet. The user needs to manually perform a power cycle (restart) of the device to restore BT connectivity.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zh-jieli:fw-ac63_bt_sdk:*:*:*:*:*:*:*:*
OR cpe:2.3:h:zh-jieli:ac6936:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6951:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6952:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6954:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6955:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6956:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6963:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6965:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6966:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6969:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6973:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6976:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6983:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6986:-:*:*:*:*:*:*:*

History

09 Sep 2021, 23:27

Type Values Removed Values Added
CPE cpe:2.3:h:zh-jieli:ac6963:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6986:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6954:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6936:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6976:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6955:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6966:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6956:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6951:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6973:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6965:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6983:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6969:-:*:*:*:*:*:*:*
cpe:2.3:h:zh-jieli:ac6952:-:*:*:*:*:*:*:*
cpe:2.3:o:zh-jieli:fw-ac63_bt_sdk:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 3.3
v3 : 6.5
References (MISC) https://launchstudio.bluetooth.com/ListingDetails/91371 - (MISC) https://launchstudio.bluetooth.com/ListingDetails/91371 - Third Party Advisory
References (MISC) https://github.com/Jieli-Tech/fw-AC63_BT_SDK - (MISC) https://github.com/Jieli-Tech/fw-AC63_BT_SDK - Third Party Advisory
References (MISC) https://dl.packetstormsecurity.net/papers/general/braktooth.pdf - (MISC) https://dl.packetstormsecurity.net/papers/general/braktooth.pdf - Technical Description, Third Party Advisory
CWE NVD-CWE-noinfo

07 Sep 2021, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-07 06:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-34144

Mitre link : CVE-2021-34144

CVE.ORG link : CVE-2021-34144


JSON object : View

Products Affected

zh-jieli

  • ac6936
  • ac6954
  • ac6955
  • ac6963
  • ac6969
  • ac6973
  • ac6976
  • ac6966
  • ac6965
  • fw-ac63_bt_sdk
  • ac6986
  • ac6956
  • ac6983
  • ac6951
  • ac6952