9.8

CVE-2025-21043

Warnung
Medienbericht

Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SamsungAndroid Version13.0 Update-
SamsungAndroid Version13.0 Updatesmr-apr-2022-r1
SamsungAndroid Version13.0 Updatesmr-apr-2023-r1
SamsungAndroid Version13.0 Updatesmr-apr-2024-r1
SamsungAndroid Version13.0 Updatesmr-apr-2025-r1
SamsungAndroid Version13.0 Updatesmr-aug-2022-r1
SamsungAndroid Version13.0 Updatesmr-aug-2023-r1
SamsungAndroid Version13.0 Updatesmr-aug-2024-r1
SamsungAndroid Version13.0 Updatesmr-aug-2025-r1
SamsungAndroid Version13.0 Updatesmr-dec-2021-r1
SamsungAndroid Version13.0 Updatesmr-dec-2022-r1
SamsungAndroid Version13.0 Updatesmr-dec-2023-r1
SamsungAndroid Version13.0 Updatesmr-dec-2024-r1
SamsungAndroid Version13.0 Updatesmr-feb-2022-r1
SamsungAndroid Version13.0 Updatesmr-feb-2023-r1
SamsungAndroid Version13.0 Updatesmr-feb-2024-r1
SamsungAndroid Version13.0 Updatesmr-feb-2025-r1
SamsungAndroid Version13.0 Updatesmr-jan-2022-r1
SamsungAndroid Version13.0 Updatesmr-jan-2023-r1
SamsungAndroid Version13.0 Updatesmr-jan-2024-r1
SamsungAndroid Version13.0 Updatesmr-jan-2025-r1
SamsungAndroid Version13.0 Updatesmr-jul-2022-r1
SamsungAndroid Version13.0 Updatesmr-jul-2023-r1
SamsungAndroid Version13.0 Updatesmr-jul-2024-r1
SamsungAndroid Version13.0 Updatesmr-jul-2025-r1
SamsungAndroid Version13.0 Updatesmr-jun-2022-r1
SamsungAndroid Version13.0 Updatesmr-jun-2023-r1
SamsungAndroid Version13.0 Updatesmr-jun-2024-r1
SamsungAndroid Version13.0 Updatesmr-jun-2025-r1
SamsungAndroid Version13.0 Updatesmr-mar-2022-r1
SamsungAndroid Version13.0 Updatesmr-mar-2023-r1
SamsungAndroid Version13.0 Updatesmr-mar-2024-r1
SamsungAndroid Version13.0 Updatesmr-mar-2025-r1
SamsungAndroid Version13.0 Updatesmr-may-2022-r1
SamsungAndroid Version13.0 Updatesmr-may-2023-r1
SamsungAndroid Version13.0 Updatesmr-may-2024-r1
SamsungAndroid Version13.0 Updatesmr-may-2025-r1
SamsungAndroid Version13.0 Updatesmr-nov-2021-r1
SamsungAndroid Version13.0 Updatesmr-nov-2022-r1
SamsungAndroid Version13.0 Updatesmr-nov-2023-r1
SamsungAndroid Version13.0 Updatesmr-nov-2024-r1
SamsungAndroid Version13.0 Updatesmr-oct-2022-r1
SamsungAndroid Version13.0 Updatesmr-oct-2023-r1
SamsungAndroid Version13.0 Updatesmr-oct-2024-r1
SamsungAndroid Version13.0 Updatesmr-sep-2022-r1
SamsungAndroid Version13.0 Updatesmr-sep-2023-r1
SamsungAndroid Version13.0 Updatesmr-sep-2024-r1
SamsungAndroid Version14.0 Update-
SamsungAndroid Version14.0 Updatesmr-apr-2022-r1
SamsungAndroid Version14.0 Updatesmr-apr-2023-r1
SamsungAndroid Version14.0 Updatesmr-apr-2024-r1
SamsungAndroid Version14.0 Updatesmr-apr-2025-r1
SamsungAndroid Version14.0 Updatesmr-aug-2022-r1
SamsungAndroid Version14.0 Updatesmr-aug-2023-r1
SamsungAndroid Version14.0 Updatesmr-aug-2024-r1
SamsungAndroid Version14.0 Updatesmr-aug-2025-r1
SamsungAndroid Version14.0 Updatesmr-dec-2021-r1
SamsungAndroid Version14.0 Updatesmr-dec-2022-r1
SamsungAndroid Version14.0 Updatesmr-dec-2023-r1
SamsungAndroid Version14.0 Updatesmr-dec-2024-r1
SamsungAndroid Version14.0 Updatesmr-feb-2022-r1
SamsungAndroid Version14.0 Updatesmr-feb-2023-r1
SamsungAndroid Version14.0 Updatesmr-feb-2024-r1
SamsungAndroid Version14.0 Updatesmr-feb-2025-r1
SamsungAndroid Version14.0 Updatesmr-jan-2022-r1
SamsungAndroid Version14.0 Updatesmr-jan-2023-r1
SamsungAndroid Version14.0 Updatesmr-jan-2024-r1
SamsungAndroid Version14.0 Updatesmr-jan-2025-r1
SamsungAndroid Version14.0 Updatesmr-jul-2022-r1
SamsungAndroid Version14.0 Updatesmr-jul-2023-r1
SamsungAndroid Version14.0 Updatesmr-jul-2024-r1
SamsungAndroid Version14.0 Updatesmr-jul-2025-r1
SamsungAndroid Version14.0 Updatesmr-jun-2022-r1
SamsungAndroid Version14.0 Updatesmr-jun-2023-r1
SamsungAndroid Version14.0 Updatesmr-jun-2024-r1
SamsungAndroid Version14.0 Updatesmr-jun-2025-r1
SamsungAndroid Version14.0 Updatesmr-mar-2022-r1
SamsungAndroid Version14.0 Updatesmr-mar-2023-r1
SamsungAndroid Version14.0 Updatesmr-mar-2024-r1
SamsungAndroid Version14.0 Updatesmr-mar-2025-r1
SamsungAndroid Version14.0 Updatesmr-may-2022-r1
SamsungAndroid Version14.0 Updatesmr-may-2023-r1
SamsungAndroid Version14.0 Updatesmr-may-2024-r1
SamsungAndroid Version14.0 Updatesmr-may-2025-r1
SamsungAndroid Version14.0 Updatesmr-nov-2021-r1
SamsungAndroid Version14.0 Updatesmr-nov-2022-r1
SamsungAndroid Version14.0 Updatesmr-nov-2023-r1
SamsungAndroid Version14.0 Updatesmr-nov-2024-r1
SamsungAndroid Version14.0 Updatesmr-oct-2022-r1
SamsungAndroid Version14.0 Updatesmr-oct-2023-r1
SamsungAndroid Version14.0 Updatesmr-oct-2024-r1
SamsungAndroid Version14.0 Updatesmr-sep-2022-r1
SamsungAndroid Version14.0 Updatesmr-sep-2023-r1
SamsungAndroid Version14.0 Updatesmr-sep-2024-r1
SamsungAndroid Version15.0 Update-
SamsungAndroid Version15.0 Updatesmr-apr-2025-r1
SamsungAndroid Version15.0 Updatesmr-aug-2025-r1
SamsungAndroid Version15.0 Updatesmr-jul-2025-r1
SamsungAndroid Version15.0 Updatesmr-jun-2025-r1
SamsungAndroid Version15.0 Updatesmr-mar-2025-r1
SamsungAndroid Version15.0 Updatesmr-may-2025-r1
SamsungAndroid Version16.0 Update-
SamsungAndroid Version16.0 Updatesmr-aug-2025-r1

02.10.2025: CISA Known Exploited Vulnerabilities (KEV) Catalog

Samsung Mobile Devices Out-of-Bounds Write Vulnerability

Schwachstelle

Samsung mobile devices contain an out-of-bounds write vulnerability in libimagecodec.quram.so which allows remote attackers to execute arbitrary code.

Beschreibung

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 11.62% 0.934
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mobile.security@samsung.com 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.