CVE-2024-24690: Zoom Clients - Improper Input Validation
Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-24690?
The severity of CVE-2024-24690 is classified based on its impact on system availability due to improper input validation leading to potential denial of service.
How do I fix CVE-2024-24690?
To fix CVE-2024-24690, upgrade your Zoom clients to versions 5.16.5 or later for desktop, 5.16.10 or later for VDI clients, and 5.17.0 or later for Zoom Rooms.
Which Zoom products are affected by CVE-2024-24690?
CVE-2024-24690 affects Zoom Desktop Client, Zoom VDI Client, Zoom Rooms Client, and Zoom Meeting SDK before their respective versions specified in the vulnerability description.
What are the potential consequences of CVE-2024-24690?
The potential consequences of CVE-2024-24690 include an authenticated user being able to disrupt the service for other users via network access.
Is there a workaround for CVE-2024-24690?
There are no official workarounds for CVE-2024-24690, and the recommended action is to upgrade to the latest versions of the affected Zoom products.