Medium severity6.5NVD Advisory· Published Sep 7, 2021· Updated Jun 17, 2026
CVE-2021-31610
CVE-2021-31610
Description
The Bluetooth Classic implementation on AB32VG1 devices does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (either restart or deadlock the device) by flooding a device with LMP_AU_rand data.
Affected products
4- cpe:2.3:o:bluetrum:ab5376t_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:bluetrum:bt8896a_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:mi:mi_true_wireless_earbuds_basic_2_firmware:-:*:*:*:*:*:*:*
- AB32VG1/AB32VG1 devicesdescription
Patches
Vulnerability mechanics
References
4- www.bluetrum.com/product/ab5376t.htmlnvdProductVendor Advisory
- www.bluetrum.com/product/bt8896a.htmlnvdProductVendor Advisory
- dl.packetstormsecurity.net/papers/general/braktooth.pdfnvdBroken Link
- www.mi.com/global/mi-true-wireless-earbuds-basic-2/nvdNot Applicable
News mentions
0No linked articles in our index yet.