CVE-2021-28135: Medium severity espressif esp-idf vulnerability
The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (crash) in ESP32 by flooding the target device with LMP Feature Response data.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-28135?
CVE-2021-28135 is a vulnerability in the Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier, allowing attackers in radio range to trigger a denial of service (crash) in ESP32 devices.
What is the severity of CVE-2021-28135?
The severity of CVE-2021-28135 is medium, with a CVSSv3 score of 6.5.
How does CVE-2021-28135 affect Espressif ESP-IDF?
CVE-2021-28135 affects Espressif ESP-IDF versions up to and including 4.4.
How can the CVE-2021-28135 vulnerability be exploited?
Attackers in radio range can exploit CVE-2021-28135 by flooding the target device with LMP Feature Response data to trigger a denial of service (crash).
Is there a fix for CVE-2021-28135?
Yes, updating to a version of Espressif ESP-IDF that is later than 4.4 will fix the CVE-2021-28135 vulnerability.