Samsung Bluetooth Improper Privilege Management Vulnerability Allowing Local Activation of Bluetooth

Vulnerability

A vulnerability exists in the Bluetooth functionality of Samsung devices running Android versions 13, 14, and 15, prior to the July 2025 Security Maintenance Release. This vulnerability allows local attackers to enable Bluetooth by exploiting improper privilege management. The issue has been privately disclosed and was reported on April 25, 2025.

Impact

Exploitation of this vulnerability could lead to unauthorized activation of Bluetooth, potentially allowing for unauthorized connections or data transfers.

Remediation

Users can apply the July 2025 Security Maintenance Release, which includes the patch for this vulnerability. Details on how to obtain this update can be found on the Samsung Mobile Security Update page for July 2025.

Added: Jul 8, 2025, 12:06 PM
Updated: Jul 8, 2025, 12:06 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
3.3
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.