CVE-2021-28139: High severity espressif esp-idf vulnerability
The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly restrict the Feature Page upon reception of an LMP Feature Response Extended packet, allowing attackers in radio range to trigger arbitrary code execution in ESP32 via a crafted Extended Features bitfield payload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-28139?
CVE-2021-28139 is a vulnerability in the Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier.
What is the severity of CVE-2021-28139?
The severity of CVE-2021-28139 is high with a CVSS score of 8.8.
How does CVE-2021-28139 affect Espressif ESP-IDF?
CVE-2021-28139 affects Espressif ESP-IDF versions up to and including 4.4.
How can attackers exploit CVE-2021-28139?
Attackers in radio range can exploit CVE-2021-28139 by triggering arbitrary code execution on ESP32 via a crafted Extended Features bitfield payload.
Is Espressif esp32 affected by CVE-2021-28139?
No, Espressif esp32 is not vulnerable to CVE-2021-28139.