CVE-2023-36533: High severity zoom meeting software development kit vulnerability
Published Aug 8, 2023
·Updated
Uncontrolled resource consumption in Zoom SDKs before 5.14.7 may allow an unauthenticated user to enable a denial of service via network access.
Affected Software
10 affected components
Zoom Meeting Software Development Kit Android<5.14.7
Zoom Meeting Software Development Kit Iphone Os<5.14.7
Zoom Meeting Software Development Kit Linux<5.14.7
Zoom Meeting Software Development Kit Macos<5.14.7
Zoom Meeting Software Development Kit Windows<5.14.7
Zoom Video Software Development Kit Android<5.14.7
Zoom Video Software Development Kit Iphone Os<5.14.7
Zoom Video Software Development Kit Linux<5.14.7
Zoom Video Software Development Kit Macos<5.14.7
Zoom Video Software Development Kit Windows<5.14.7
Event History
Aug 8, 2023
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-36533.
2
What is the severity of CVE-2023-36533?
The severity of CVE-2023-36533 is high, with a severity value of 7.1.
3
How can an unauthenticated user exploit CVE-2023-36533?
An unauthenticated user can exploit CVE-2023-36533 by enabling a denial of service via network access.
4
Which versions of Zoom SDKs are affected by CVE-2023-36533?
Zoom SDKs before version 5.14.7 are affected by CVE-2023-36533.
5
How can I fix CVE-2023-36533?
To fix CVE-2023-36533, update your Zoom SDK to version 5.14.7 or newer.