QID 378587
Date Published: 2023-06-19
QID 378587: Zoom Client HTML Injection Vulnerability (ZSB-23006)
Zoom provides video communications with a cloud platform for video and audio conferencing, chat, and webinars across mobile, desktop, and room systems.
Affected Versions:
Zoom for Linux clients before version 5.13.10
QID Detection Logic (Authenticated):
This authenticated QID detects vulnerable Zoom Client prior to version 5.13.10(Linux)
If a victim starts a chat with a malicious user it could result in a Zoom application crash.
Solution
Customers are advised to upgrade to Zoom Client 5.13.10(Linux) or later to remediate these vulnerabilities.
Vendor References
CVEs related to QID 378587
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ZSB-23006 |
|