CVE-2022-22783: Process memory exposure in Zoom on-premise Meeting services
A vulnerability in Zoom On-Premise Meeting Connector Controller version 4.8.102.20220310 and On-Premise Meeting Connector MMR version 4.8.102.20220310 exposes process memory fragments to connected clients, which could be observed by a passive attacker.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this Zoom vulnerability?
The vulnerability ID is CVE-2022-22783.
What software versions are affected by this vulnerability?
Zoom On-Premise Meeting Connector Controller version 4.8.102.20220310 and On-Premise Meeting Connector MMR version 4.8.102.20220310 are affected.
What is the severity of CVE-2022-22783?
The severity of CVE-2022-22783 is high with a CVSS score of 7.5.
What is the impact of CVE-2022-22783?
CVE-2022-22783 exposes process memory fragments to connected clients, which could be observed by a passive attacker.
How can I fix the vulnerability CVE-2022-22783?
To fix CVE-2022-22783, update Zoom On-Premise Meeting Connector Controller and On-Premise Meeting Connector MMR to version 4.8.102.20220311 or later.