<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Vulnerabilities on Matt Suiche</title><link>https://www.msuiche.com/categories/vulnerabilities/</link><description>Recent content in Vulnerabilities on Matt Suiche</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 17 Sep 2025 00:00:00 +0200</lastBuildDate><atom:link href="https://www.msuiche.com/categories/vulnerabilities/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2025-21043: When DNG Opcodes Become Attack Vectors</title><link>https://www.msuiche.com/posts/cve-2025-21043-when-dng-opcodes-become-attack-vectors/</link><pubDate>Wed, 17 Sep 2025 00:00:00 +0200</pubDate><guid>https://www.msuiche.com/posts/cve-2025-21043-when-dng-opcodes-become-attack-vectors/</guid><description>&lt;p&gt;Another day, another zero-day. This time it&amp;rsquo;s CVE-2025-21043, a critical vulnerability in Android&amp;rsquo;s DNG image parser that&amp;rsquo;s been actively exploited in the wild. What makes this one particularly interesting is how it leverages an obscure feature of the DNG format—opcode lists—to achieve remote code execution.&lt;/p&gt;
&lt;p&gt;Following our &lt;a href="https://www.msuiche.com/posts/detecting-cve-2025-43300-a-deep-dive-into-apples-dng-processing-vulnerability/" target="_blank" rel="noopener"&gt;previous analysis of CVE-2025-43300&lt;/a&gt; and the &lt;a href="https://www.msuiche.com/posts/elegantbouncer-when-you-cant-get-the-samples-but-still-need-to-catch-the-threat/" target="_blank" rel="noopener"&gt;ELEGANTBOUNCER detection framework&lt;/a&gt;, let&amp;rsquo;s dive into how this vulnerability works and why it matters.&lt;/p&gt;
&lt;h2 id="the-discovery"&gt;The Discovery &lt;a href="#the-discovery" class="anchor"&gt;🔗&lt;/a&gt;&lt;/h2&gt;&lt;p&gt;On September 2025, Samsung just pushed a critical security update. The advisory was sparse on details, but one line caught everyone&amp;rsquo;s attention:&lt;/p&gt;</description></item></channel></rss>