NCU Bermuda

Uncategorized

  • By admin
  • February 8, 2024

Samsung Releases September 2025 Security Patch to Fix Dangerous Zero-Day CVE-2025-21043

Samsung has released the September 2025 security update to patch a high-severity zero-day vulnerability, CVE-2025-21043 (CVSS 8.8). The flaw, an out-of-bounds write in the libimagecodec.quram.so image-processing library, allows remote attackers to execute arbitrary code without user interaction—similar to zero-click attacks. The vulnerability has already been exploited in the wild, likely through malicious image files sent via WhatsApp or other messaging applications.