Vulnerability Description
The Bluetooth Classic implementation on Zhuhai Jieli AC690X devices does not properly handle the reception of an oversized LMP packet greater than 17 bytes during the LMP auto rate procedure, allowing attackers in radio range to trigger a deadlock via a crafted LMP packet.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zh-Jieli | Ac6901 Firmware | - |
| Zh-Jieli | Ac6901 | - |
| Zh-Jieli | Ac690N Firmware | - |
| Zh-Jieli | Ac690N | - |
| Zh-Jieli | Ac692N Firmware | - |
| Zh-Jieli | Ac692N | - |
| Zh-Jieli | Ac6902 Firmware | - |
| Zh-Jieli | Ac6902 | - |
| Zh-Jieli | Ac6903 Firmware | - |
| Zh-Jieli | Ac6903 | - |
| Zh-Jieli | Ac6905 Firmware | - |
| Zh-Jieli | Ac6905 | - |
| Zh-Jieli | Ac6904 Firmware | - |
| Zh-Jieli | Ac6904 | - |
| Zh-Jieli | Ac6907 Firmware | - |
| Zh-Jieli | Ac6907 | - |
| Zh-Jieli | Ac6908 Firmware | - |
| Zh-Jieli | Ac6908 | - |
| Zh-Jieli | Ac6997 Firmware | - |
| Zh-Jieli | Ac6997 | - |
References
- http://www.zh-jieli.com/product/68-cn.htmlProductVendor Advisory
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdfBroken Link
- https://launchstudio.bluetooth.com/ListingDetails/19746Third Party Advisory
- http://www.zh-jieli.com/product/68-cn.htmlProductVendor Advisory
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdfBroken Link
- https://launchstudio.bluetooth.com/ListingDetails/19746Third Party Advisory
FAQ
What is CVE-2021-31612?
CVE-2021-31612 is a vulnerability with a CVSS score of 6.5 (MEDIUM). The Bluetooth Classic implementation on Zhuhai Jieli AC690X devices does not properly handle the reception of an oversized LMP packet greater than 17 bytes during the LMP auto rate procedure, allowing...
How severe is CVE-2021-31612?
CVE-2021-31612 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-31612?
Check the references section above for vendor advisories and patch information. Affected products include: Zh-Jieli Ac6901 Firmware, Zh-Jieli Ac6901, Zh-Jieli Ac690N Firmware, Zh-Jieli Ac690N, Zh-Jieli Ac692N Firmware.