QID 377688
QID 377688: Zoom Client for Meetings Heap Overflow Vulnerability (ZSB-21002)
Zoom provides video communications with a cloud platform for video and audio conferencing, chat, and webinars across mobile, desktop, and room systems.
Affected Versions:
All desktop versions of the Zoom Client for Meetings before 5.6.3
QID Detection Logic (Authenticated):
This authenticated QID detects vulnerable Zoom Client prior to version 5.6.3(Windows, Macos, Linux)
The attack chain demonstrated during Pwn20wn was mitigated in a server-side change in Zoom s infrastructure on 2021-04-09.
Solution
Customers are advised to upgrade to Zoom Client 5.6.3(Windows, Macos, Linux) or later to remediate these vulnerabilities.
Vendor References
CVEs related to QID 377688
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ZSB-21002 |
|