ZeroHour

CVE-2021-28155

CVSS 3.1
6.5 medium
EPSS
<1%p38
Published
()
Modified
Description

The Bluetooth Classic implementation on JBL TUNE500BT devices does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and shutdown a device by flooding the target device with LMP Feature Response data.

Vendors
jbl
Products
tune500bt firmware
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.