Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
https://www.infosecurity-magazine.com/news/cisa-zeroday-bugspyware-attacks-kev/
https://www.helpnetsecurity.com/2025/11/11/samsung-spyware-cve-2025-21042/
https://hackread.com/landfall-spyware-samsung-galaxy-malicious-images/
https://www.theregister.com/2025/11/07/landfall_spyware_samsung_0days/
https://www.securityweek.com/landfall-android-spyware-targeted-samsung-phones-via-zero-day/
https://www.darkreading.com/mobile-security/landfall-malware-targeted-samsung-galaxy-users
https://unit42.paloaltonetworks.com/landfall-is-new-commercial-grade-android-spyware/
https://thehackernews.com/2025/11/samsung-zero-click-flaw-exploited-to.html
https://www.securityweek.com/organizations-warned-of-exploited-meteobridge-vulnerability/
https://thehackernews.com/2025/10/cisa-flags-meteobridge-cve-2025-4008.html
https://www.theregister.com/2025/09/16/apple_0day_spy_attacks/
https://www.securityweek.com/samsung-patches-zero-day-exploited-against-android-users/
https://hackread.com/samsung-android-image-parsing-vulnerability-attacks/
https://www.theregister.com/2025/09/12/samsung_fixes_android_0day/
https://thehackernews.com/2025/09/samsung-fixes-critical-zero-day-cve.html
https://securityaffairs.com/182135/hacking/samsung-fixed-actively-exploited-zero-day.html