First published: Tue Aug 08 2023(Updated: )
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.
Credit: security@zoom.us security@zoom.us
Affected Software | Affected Version | How to fix |
---|---|---|
Zoom Meeting Software Development Kit | <5.15.5 | |
Zoom Meeting Software Development Kit | <5.15.5 | |
Zoom Meeting Software Development Kit | <5.15.5 | |
Zoom Meeting Software Development Kit | <5.15.5 | |
Zoom Meeting Software Development Kit | <5.15.5 | |
Zoom Rooms | <5.15.5 | |
Zoom Rooms | <5.15.5 | |
Zoom Rooms | <5.15.5 | |
Zoom Rooms | <5.15.5 | |
Zoom Zoom | <5.15.5 | |
Zoom Zoom | <5.15.5 | |
Zoom Zoom | <5.15.5 | |
Zoom Zoom | <5.15.5 | |
Zoom Zoom | <5.15.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39214 is a vulnerability that allows an authenticated user to enable a denial of service via network access in Zoom Client SDK's before version 5.15.5.
CVE-2023-39214 exposes sensitive information and allows an authenticated user to enable a denial of service through network access.
Zoom Client SDK versions before 5.15.5 are affected by CVE-2023-39214.
CVE-2023-39214 has a severity rating of 8.1, which is considered high.
To fix the CVE-2023-39214 vulnerability, update your Zoom Client SDK to version 5.15.5 or higher.