Samsung Galaxy Watch SemSensorService Improper Access Control Vulnerability

Vulnerability

A vulnerability exists in the SemSensorService for Galaxy Watch, prior to the SMR August 2025 Release 1, allowing local attackers to access sensitive information from motion and body sensors. This issue arises from improper access control within the service.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive motion and body sensor data on affected Galaxy Watch devices.

Remediation

Users can update to the Samsung Security Maintenance Release (SMR) August 2025 Release 1, which includes the patch for this vulnerability.

Added: Aug 6, 2025, 5:57 AM
Updated: Aug 6, 2025, 5:57 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.