CVE-2021-34144 is a medium-severity denial-of-service vulnerability affecting the Bluetooth Classic implementation in the Zhuhai Jieli AC6366C BT SDK, specifically versions through 0.9.1. An attacker within radio range can send a malformed LMP_SCO_Link_Request packet to prevent new Bluetooth connections, requiring a manual device restart to restore functionality. The attack is of low complexity and does not require user interaction, but it only impacts availability. There is no evidence of active exploitation, public exploit code, or significant community discussion, though it has received some media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.9.1CPE matchmatch criteria | cpe:2.3:o:zh-jieli:fw-ac63_bt_sdk:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.