The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and restart (crash) of the device by flooding it with LMP_AU_Rand packets after the paging procedure.
2021-09-07T07:15:07.327
2024-11-21T06:09:57.080
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:A/AC:L/Au:N/C:N/I:N/A:C
6.5
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cypress | cyw920735q60evb-01_firmware | - | Yes |
Hardware | cypress | cyw920735q60evb-01 | - | No |
Operating System | cypress | cyw20735b1_firmware | - | Yes |
Hardware | cypress | cyw20735b1 | - | No |