Vulnerability Description
The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is followed by a malformed LMP packet, allowing attackers in radio range to deadlock a device via a crafted LMP packet. The user needs to manually reboot the device to restore communication.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zh-Jieli | Ac6901 Firmware | - |
| Zh-Jieli | Ac6901 | - |
| Zh-Jieli | Ac6925 Firmware | - |
| Zh-Jieli | Ac6925 | - |
| Zh-Jieli | Ac6926 Firmware | - |
| Zh-Jieli | Ac6926 | - |
| Zh-Jieli | Ac6928 Firmware | - |
| Zh-Jieli | Ac6928 | - |
| Zh-Jieli | Ac6921 Firmware | - |
| Zh-Jieli | Ac6921 | - |
Related Weaknesses (CWE)
References
- http://www.zh-jieli.com/product/68-cn.htmlVendor Advisory
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdfBroken Link
- https://launchstudio.bluetooth.com/ListingDetails/19746Third Party Advisory
- https://launchstudio.bluetooth.com/ListingDetails/58628Third Party Advisory
- http://www.zh-jieli.com/product/68-cn.htmlVendor Advisory
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdfBroken Link
- https://launchstudio.bluetooth.com/ListingDetails/19746Third Party Advisory
- https://launchstudio.bluetooth.com/ListingDetails/58628Third Party Advisory
FAQ
What is CVE-2021-31611?
CVE-2021-31611 is a vulnerability with a CVSS score of 5.7 (MEDIUM). The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is followed by a malformed LMP packet, allowing attacke...
How severe is CVE-2021-31611?
CVE-2021-31611 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-31611?
Check the references section above for vendor advisories and patch information. Affected products include: Zh-Jieli Ac6901 Firmware, Zh-Jieli Ac6901, Zh-Jieli Ac6925 Firmware, Zh-Jieli Ac6925, Zh-Jieli Ac6926 Firmware.