CVE-2021-28139 is a critical vulnerability affecting the Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier, specifically impacting ESP32 devices. An attacker within radio range can exploit a flaw in how the system handles LMP Feature Response Extended packets, using a crafted Extended Features bitfield payload to achieve arbitrary code execution. This vulnerability carries a high CVSS score of 8.8, indicating a severe risk with low attack complexity and no user interaction required, potentially leading to complete compromise of confidentiality, integrity, and availability. While there is no evidence of active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community discussion and media coverage, suggesting awareness within the security community.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.4CPE matchmatch criteria | cpe:2.3:a:espressif:esp-idf:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.