CVE-2023-39205: Medium severity zoom meetings vulnerability
Published Nov 14, 2023
·Updated
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Affected Software
17 affected components
Zoom Meetings Android<5.16.0
Zoom Meetings Iphone Os<5.16.0
Zoom Meetings Linux<5.16.0
Zoom Meetings Macos<5.16.0
Zoom Meetings Windows<5.16.0
Zoom Video Software Development Kit Android<1.9.0
Zoom Video Software Development Kit Iphone Os<1.9.0
Zoom Video Software Development Kit Linux<1.9.0
Zoom Video Software Development Kit Macos<1.9.0
Zoom Video Software Development Kit Windows<1.9.0
Zoom Virtual Desktop Infrastructure<5.14.13
Zoom Virtual Desktop Infrastructure>=5.15.0<5.15.11
Zoom Zoom Android<5.16.0
Zoom Zoom Iphone Os<5.16.0
Zoom Zoom Linux<5.16.0
Zoom Zoom Macos<5.16.0
Zoom Zoom Windows<5.16.0
Event History
Nov 14, 2023
CVE Published
10:32 PM
Data Sourced
10:32 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-39205?
CVE-2023-39205 is a vulnerability that allows an authenticated user to conduct a denial of service attack in Zoom Team Chat.
2
How does CVE-2023-39205 impact Zoom clients?
CVE-2023-39205 affects various Zoom clients, including Zoom Meetings, Zoom Video Software Development Kit, Zoom Virtual Desktop Infrastructure, and Zoom Zoom.
3
What is the severity of CVE-2023-39205?
CVE-2023-39205 has a severity rating of 6.5 (medium).
4
How can an authenticated user exploit CVE-2023-39205?
An authenticated user can exploit CVE-2023-39205 by conducting a denial of service attack through network access.
5
Is there a fix available for CVE-2023-39205?
To mitigate CVE-2023-39205, update your Zoom clients to versions 5.16.1 or higher.