CVE-2021-31609: Medium severity silabs iwrap vulnerability
Published Sep 7, 2021
·Updated
The Bluetooth Classic implementation in Silicon Labs iWRAP 6.3.0 and earlier does not properly handle the reception of an oversized LMP packet greater than 17 bytes, allowing attackers in radio range to trigger a crash in WT32i via a crafted LMP packet.
Affected Software
2 affected components
Silabs Iwrap<=6.3.0
Silabs Wt32i-a
Event History
Sep 7, 2021
CVE Published
via MITRE·06:30 AM
Data Sourced
via MITRE·06:30 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-31609.
2
What is the affected software?
The affected software is Silicon Labs iWRAP 6.3.0 and earlier.
3
What is the severity of CVE-2021-31609?
The severity of CVE-2021-31609 is medium.
4
How can this vulnerability be exploited?
This vulnerability can be exploited by attackers in radio range who can trigger a crash in WT32i by sending a crafted LMP packet.
5
Is there a fix available for this vulnerability?
There is no information available regarding a fix for this vulnerability at the moment.