Vulnerability Details CVE-2021-31787
The Bluetooth Classic implementation on Actions ATS2815 chipsets does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and shutdown of a device by flooding the target device with LMP_features_res packets.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.6%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 6.1
Products affected by CVE-2021-31787
-
cpe:2.3:h:actions-semi:ats2815:-
-
cpe:2.3:h:actions-semi:ats2819:-
-
cpe:2.3:h:actions-semi:ats2819p:-
-
cpe:2.3:h:actions-semi:ats2819s:-
-
cpe:2.3:h:actions-semi:ats2819t:-
-
cpe:2.3:o:actions-semi:ats2815_firmware:-
-
cpe:2.3:o:actions-semi:ats2819_firmware:-
-
cpe:2.3:o:actions-semi:ats2819p_firmware:-
-
cpe:2.3:o:actions-semi:ats2819s_firmware:-
-
cpe:2.3:o:actions-semi:ats2819t_firmware:-