Zoom Products Multiple Vulnerabilities
Release Date: 15 May 2025
RISK: Medium Risk
TYPE: Clients - Productivity Products
Multiple vulnerabilities were identified in Zoom Products. A remote attacker could exploit these vulnerabilities to trigger denial of service condition and elevation of privilege on the targeted system.
Impact
- Denial of Service
- Elevation of Privilege
System / Technologies affected
- Zoom Workplace Desktop App for Windows before version 6.4.0
- Zoom Workplace Desktop App for macOS before version 6.4.0
- Zoom Workplace Desktop App for Linux before version 6.4.0
- Zoom Workplace App for iOS before version 6.4.0
- Zoom Workplace App for Android before version 6.4.0
- Zoom Workplace VDI Client for Windows before version 6.3.10 (except versions 6.1.16 and 6.2.12)
- Zoom Rooms Controller for Windows before version 6.4.0
- Zoom Rooms Controller for macOS before version 6.4.0
- Zoom Rooms Controller for Linux before version 6.4.0
- Zoom Rooms Controller for Android before version 6.4.0
- Zoom Rooms Client for Windows before version 6.4.0
- Zoom Rooms Client for macOS before version 6.4.0
- Zoom Rooms Client for Android before version 6.4.0
- Zoom Rooms Client for iPad before version 6.4.0
- Zoom Meeting SDK for Windows before version 6.4.0
- Zoom Meeting SDK for iOS before version 6.4.0
- Zoom Meeting SDK for Android before version 6.4.0
- Zoom Meeting SDK for macOS before version 6.4.0
- Zoom Meeting SDK for Linux before version 6.4.0
- Zoom Workplace VDI Client for Windows before version 6.3.10
- Zoom Workplace VDI Client for Windows before version 6.3.10 (except versions 6.1.17 and 6.2.13)
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://www.zoom.com/en/trust/security-bulletin/zsb-25016
- https://www.zoom.com/en/trust/security-bulletin/zsb-25017
- https://www.zoom.com/en/trust/security-bulletin/zsb-25018
- https://www.zoom.com/en/trust/security-bulletin/zsb-25019
- https://www.zoom.com/en/trust/security-bulletin/zsb-25020
- https://www.zoom.com/en/trust/security-bulletin/zsb-25021
- https://www.zoom.com/en/trust/security-bulletin/zsb-25022
Vulnerability Identifier
- CVE-2025-30663
- CVE-2025-30664
- CVE-2025-30665
- CVE-2025-30666
- CVE-2025-30667
- CVE-2025-30668
- CVE-2025-46785
- CVE-2025-46786
- CVE-2025-46787
Source
Related Link
- https://www.zoom.com/en/trust/security-bulletin/zsb-25016
- https://www.zoom.com/en/trust/security-bulletin/zsb-25017
- https://www.zoom.com/en/trust/security-bulletin/zsb-25018
- https://www.zoom.com/en/trust/security-bulletin/zsb-25019
- https://www.zoom.com/en/trust/security-bulletin/zsb-25020
- https://www.zoom.com/en/trust/security-bulletin/zsb-25021
- https://www.zoom.com/en/trust/security-bulletin/zsb-25022
沒有留言:
發佈留言