Samsung Galaxy Watch Bluetooth Pairing Vulnerability Allowing Unauthorized Device Pairing

Vulnerability

A vulnerability exists in Galaxy Watch devices running Android Watch 14, prior to the SMR April 2025 Release 1, allowing local attackers to pair with specific Bluetooth devices without user interaction. This issue arises from improper handling of exceptional conditions during the Bluetooth pairing process.

Impact

Exploitation of this vulnerability allows for unauthorized Bluetooth pairing, potentially leading to unauthorized access or control over paired devices.

Remediation

Users can update their Galaxy Watch devices to the SMR April 2025 Release 1 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.