@dalias the more detailed discussions use the term "HCI," which would be the _host controller_ interface -- the serial link from the ESP32 to the device it's installed in. This suggests that it's a way to root the (certified, fixed-firmware) bluetooth module from a device it's installed in, which does sound useful, but is not at all a remote-accessible backdoor.
All the advisories are damn short on details though. I could be completely wrong.