Vulnerabilities > CVE-2021-28135 - Unspecified vulnerability in Espressif Esp-Idf
Attack vector
ADJACENT_NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH low complexity
espressif
Summary
The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (crash) in ESP32 by flooding the target device with LMP Feature Response data.
Vulnerable Configurations
References
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdf
- https://dl.packetstormsecurity.net/papers/general/braktooth.pdf
- https://github.com/espressif/esp32-bt-lib
- https://github.com/espressif/esp32-bt-lib
- https://github.com/espressif/esp-idf
- https://github.com/espressif/esp-idf
- https://www.espressif.com/en/products/socs/esp32
- https://www.espressif.com/en/products/socs/esp32