Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-grq2-2v86-6ppx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.7

Описание

The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is followed by a malformed LMP packet, allowing attackers in radio range to deadlock a device via a crafted LMP packet. The user needs to manually reboot the device to restore communication.

The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is followed by a malformed LMP packet, allowing attackers in radio range to deadlock a device via a crafted LMP packet. The user needs to manually reboot the device to restore communication.

EPSS

Процентиль: 27%
0.00098
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-667

Связанные уязвимости

CVSS3: 5.7
nvd
больше 4 лет назад

The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is followed by a malformed LMP packet, allowing attackers in radio range to deadlock a device via a crafted LMP packet. The user needs to manually reboot the device to restore communication.

CVSS3: 5.7
fstec
больше 4 лет назад

Уязвимость реализации Bluetooth Classic микропрограммного обеспечения устройств Zhuhai Jieli AC690X и AC692X, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 27%
0.00098
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-667