InsighthubNews
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
Reading: Samsung fixes critical zero-day CVE-2025-21043 utilized in Android attacks
Share
Font ResizerAa
InsighthubNewsInsighthubNews
Search
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
© 2024 All Rights Reserved | Powered by Insighthub News
InsighthubNews > Technology > Samsung fixes critical zero-day CVE-2025-21043 utilized in Android attacks
Technology

Samsung fixes critical zero-day CVE-2025-21043 utilized in Android attacks

September 12, 2025 1 Min Read
Share
Samsung fixes critical zero-day CVE-2025-21043 utilized in Android attacks
SHARE

Samsung has released monthly security updates for Android. This includes fixing a security vulnerability that it said was exploited in a zero-day attack.

Vulnerability, CVE-2025-21043 (CVSS score: 8.8), about out-of-range writes that can result in arbitrary code execution.

“Bunds of bounds write so in libimagecodec.quram.s allows remote attackers to execute arbitrary code by using release 1 before SMR SEP-2025.” “The patch fixed an incorrect implementation.”

According to a 2020 report from Google Project Zero, LibimageCodec.Quram.SO is a closed-source image analysis library developed by QuramSoft, which implements support for a variety of image formats.

According to the Korean electronics giant, key ratings will affect Android versions 13, 14, 15 and 16. The vulnerability was made public to individuals on August 13th, 2025.

Samsung did not share details about how the vulnerabilities were exploited in the attacks and what could be behind these efforts. However, he acknowledged that “exploitation of this issue exists in the wild.”

This development comes shortly after Google said it had resolved two security flaws on Android (CVE-2025-38352 and CVE-2025-48543).

See also  Nation-state hackers deploy new Airstalk malware in suspected supply chain attack
Share This Article
Twitter Copy Link
Previous Article The new Stalker Remaster Patch continues to fight ongoing performance issues The new Stalker Remaster Patch continues to fight ongoing performance issues
Next Article Mayor Bus will appoint Mitch Cumin as her third Chief of Staff in three years Mayor Bus will appoint Mitch Cumin as her third Chief of Staff in three years

Latest News

Critical RSC bug in React and Next.js allows unauthenticated remote code execution

Critical RSC bug in React and Next.js allows unauthenticated remote code execution

A maximum severity security flaw has been disclosed in React…

December 3, 2025
India orders messaging apps to work only with active SIM cards to prevent fraud and abuse

India orders messaging apps to work only with active SIM cards to prevent fraud and abuse

India's Department of Telecommunications (DoT) has directed app-based telecom service…

December 2, 2025
India orders mobile phone manufacturers to pre-install Sanchar Saathi app to prevent wire fraud

India orders mobile phone manufacturers to pre-install Sanchar Saathi app to prevent wire fraud

India's Ministry of Telecommunications has reportedly asked major mobile device…

December 1, 2025
CISA adds actively exploited XSS bug CVE-2021-26829 in OpenPLC ScadaBR to KEV

CISA adds actively exploited XSS bug CVE-2021-26829 in OpenPLC ScadaBR to KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated…

November 30, 2025
North Korean hackers deploy 197 npm packages to spread latest OtterCookie malware

North Korean hackers deploy 197 npm packages to spread latest OtterCookie malware

The North Korean threat actors behind the Contagious Interview campaign…

November 29, 2025

You Might Also Like

Confucius hackers hit Pakistan with new Wooperstealer and Anonymous malware
Technology

Confucius hackers hit Pakistan with new Wooperstealer and Anonymous malware

3 Min Read
Russian IT Network
Technology

Chinese threat group Jewelbug secretly infiltrated Russian IT networks for months

5 Min Read
Legacy Python bootstrap script creates domain takeover risk for multiple PyPI packages
Technology

Legacy Python bootstrap script creates domain takeover risk for multiple PyPI packages

5 Min Read
New eavesdropping attack extracts Intel SGX ECDSA key via DDR4 memory bus interposer
Technology

New eavesdropping attack extracts Intel SGX ECDSA key via DDR4 memory bus interposer

4 Min Read
InsighthubNews
InsighthubNews

Welcome to InsighthubNews, your reliable source for the latest updates and in-depth insights from around the globe. We are dedicated to bringing you up-to-the-minute news and analysis on the most pressing issues and developments shaping the world today.

  • Home
  • Celebrity
  • Environment
  • Business
  • Crypto
  • Home
  • World News
  • Politics
  • Celebrity
  • Environment
  • Business
  • Technology
  • Crypto
  • Sports
  • Gaming
  • World News
  • Politics
  • Technology
  • Sports
  • Gaming
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service

© 2024 All Rights Reserved | Powered by Insighthub News

Welcome Back!

Sign in to your account

Lost your password?