CVE-2025-20946: High severity Samsung Galaxy Watch vulnerability
Improper handling of exceptional conditions in pairing specific bluetooth devices in Galaxy Watch Bluetooth pairing prior to SMR Apr-2025 Release 1 allows local attackers to pair with specific bluetooth devices without user interaction.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20946?
CVE-2025-20946 is classified as a medium severity vulnerability that allows local attackers to pair with specific Bluetooth devices without user consent.
How do I fix CVE-2025-20946?
To mitigate CVE-2025-20946, update your Samsung Galaxy Watch to the latest firmware version SMR Apr-2025 Release 1 or later.
What type of devices are affected by CVE-2025-20946?
CVE-2025-20946 affects Samsung Galaxy Watch devices that are running firmware versions prior to SMR Apr-2025 Release 1.
What is the risk associated with CVE-2025-20946?
The risk associated with CVE-2025-20946 is unauthorized Bluetooth pairing, potentially leading to data exposure or device manipulation.
Who is affected by CVE-2025-20946?
Users of Samsung Galaxy Watch devices prior to the SMR Apr-2025 Release 1 update are affected by CVE-2025-20946.