CVE-2025-21042 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
26
occurrences
First Seen
November 7, 2025
Last Seen
March 5, 2026

CVE-2025-21042 is a vulnerability tracked across 6 threat clusters and 26 intelligence report mentions on ThreatCluster. First observed November 7, 2025; most recent activity March 5, 2026.

Related Threat Clusters

  • Google Reports 90 Exploited Zero-Day Vulnerabilities in 2025

    Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025, a rise from 78 in 2024. Less than half of these vulnerabilities were attributed to specific threat actors, with spyware vendors…

    35 articles · Updated March 5, 2026
  • Landfall Spyware Exploits Samsung Galaxy Zero-Day Vulnerability

    A sophisticated spyware named 'Landfall' targeted Samsung Galaxy phones for nearly a year, exploiting a zero-day vulnerability in Samsung's image-processing library. Discovered by Palo Alto Networks' Unit 42, the…

    15 articles · Updated November 12, 2025
  • Landfall Spyware Exploits Samsung Galaxy Zero-Day Vulnerability

    A sophisticated spyware named Landfall targeted Samsung Galaxy phones for nearly a year, exploiting a zero-day vulnerability in Samsung's image processing library. Discovered by Palo Alto Networks' Unit 42, the malware…

    37 articles · Updated November 12, 2025
  • Landfall Spyware Exploits Samsung Galaxy Zero-Day Vulnerability

    Landfall, a sophisticated Android spyware, targeted Samsung Galaxy phones for nearly a year, exploiting a zero-day vulnerability (CVE-2025-21042) in Samsung's image-processing library. The campaign, uncovered by Palo…

    47 articles · Updated November 10, 2025
  • CISA Adds Samsung Mobile Vulnerability CVE-2025-21042 to Exploited Catalog

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a Samsung mobile devices vulnerability, tracked as CVE-2025-21042, to its Known Exploited Vulnerabilities catalog. This flaw, which has a CVSS…

    2 articles · Updated November 11, 2025
  • CISA Adds Samsung Mobile Vulnerability CVE-2025-21042 to KEV Catalog

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a Samsung mobile devices flaw, tracked as CVE-2025-21042, to its Known Exploited Vulnerabilities catalog. This vulnerability, which has a CVSS…

    3 articles · Updated November 11, 2025

Recent Intelligence Reports

  • Look What You Made Us Patch: 2025 Zero — Mandiant · March 5, 2026
  • CVE-2025-21042: Samsung Galaxy Zero — Socradar · November 11, 2025
  • What is 'Landfall' spyware, and how was it used to target Samsung Galaxy phones? — Indianexpress · November 11, 2025
  • CISA Adds Zero — Infosecurity-Magazine · November 11, 2025
  • U.S. CISA adds Samsung mobile devices flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.Co · November 11, 2025
  • CISA Warns of Samsung Mobile Devices 0 — Cybersecuritynews · November 11, 2025
  • CISA acknowledges known exploitation of Samsung Mobile vulnerability — Cyberdaily.Au · November 11, 2025
  • Commercial spyware targeted Samsung Galaxy users for months — Itnews.Au · November 10, 2025

CVSS v3.1 Breakdown