CVE-2021-28155: Medium severity jbl tune500bt firmware vulnerability
The Bluetooth Classic implementation on JBL TUNE500BT devices does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and shutdown a device by flooding the target device with LMP Feature Response data.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-28155.
What is the title of the vulnerability?
The title of the vulnerability is 'The Bluetooth Classic implementation on JBL TUNE500BT devices does not properly handle the reception...'
What is the severity of CVE-2021-28155?
The severity of CVE-2021-28155 is medium.
How does CVE-2021-28155 affect JBL TUNE500BT devices?
CVE-2021-28155 allows attackers in radio range to trigger a denial of service and shutdown a device by flooding it with LMP Feature Response data.
How can I fix the vulnerability in JBL TUNE500BT devices?
There are no specific fixes mentioned for this vulnerability at the moment, it's recommended to stay updated with the latest firmware and security patches provided by the manufacturer.