### [CVE-2021-31785](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-31785) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description The Bluetooth Classic implementation on Actions ATS2815 and ATS2819 chipsets does not properly handle the reception of multiple LMP_host_connection_req packets, allowing attackers in radio range to trigger a denial of service (deadlock) of the device via crafted LMP packets. Manual user intervention is required to restart the device and restore Bluetooth communication. ### POC #### Reference - https://dl.packetstormsecurity.net/papers/general/braktooth.pdf #### Github - https://github.com/JeffroMF/awesome-bluetooth-security321 - https://github.com/Matheus-Garbelini/braktooth_esp32_bluetooth_classic_attacks - https://github.com/engn33r/awesome-bluetooth-security