CVE-2022-28768: Local Privilege Escalation in Zoom Client Installer for macOS
The Zoom Client for Meetings Installer for macOS (Standard and for IT Admin) before version 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability during the install process to escalate their privileges to root.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-28768?
CVE-2022-28768 is a local privilege escalation vulnerability in the Zoom Client for Meetings Installer for macOS.
How does CVE-2022-28768 affect Zoom Meetings for macOS?
CVE-2022-28768 affects Zoom Meetings for macOS by allowing a local low-privileged user to escalate their privileges to root during the installation process.
What is the severity of CVE-2022-28768?
The severity of CVE-2022-28768 is high, with a CVSS score of 7.8.
How can I fix CVE-2022-28768?
To fix CVE-2022-28768, you should update the Zoom Client for Meetings Installer for macOS to version 5.12.6 or later.
Where can I find more information about CVE-2022-28768?
You can find more information about CVE-2022-28768 in the Zoom security bulletin at https://explore.zoom.us/en/trust/security/security-bulletin/