vulnerability
Debian: CVE-2021-34146: bluez-firmware -- security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:A/AC:L/Au:N/C:N/I:N/A:C) | Sep 7, 2021 | Jul 30, 2024 | Jul 30, 2024 |
Severity
6
CVSS
(AV:A/AC:L/Au:N/C:N/I:N/A:C)
Published
Sep 7, 2021
Added
Jul 30, 2024
Modified
Jul 30, 2024
Description
The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and restart (crash) of the device by flooding it with LMP_AU_Rand packets after the paging procedure.
Solution
debian-upgrade-bluez-firmware
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.