CVE-2024-27241: Zoom Apps and SDKs - Improper Input Validation
Published Jul 15, 2024
·Updated
Improper input validation in some Zoom Apps and SDKs may allow an authenticated user to conduct a denial of service via network access.
Affected Software
15 affected components
Zoom Apps and SDKs
Zoom Meeting Software Development Kit Android<6.0.0
Zoom Meeting Software Development Kit Iphone Os<6.0.0
Zoom Meeting Software Development Kit Linux<6.0.0
Zoom Meeting Software Development Kit Macos<6.0.0
Zoom Meeting Software Development Kit Windows<6.0.0
Zoom Rooms Ipados<6.0.0
Zoom Rooms Macos<6.0.0
Zoom Rooms Windows<6.0.0
Zoom Workplace Android<6.0.0
Zoom Workplace Iphone Os<6.0.0
Zoom Workplace Desktop Linux<6.0.0
Zoom Workplace Desktop Macos<6.0.0
Zoom Workplace Desktop Windows<6.0.0
Zoom Workplace Virtual Desktop Infrastructure Windows<5.17.13
Event History
Jul 15, 2024
CVE Published
via MITRE·05:17 PM
Data Sourced
via MITRE·05:17 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-27241?
CVE-2024-27241 has been categorized as a high severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2024-27241?
To fix CVE-2024-27241, users should update to the latest version of Zoom Apps and SDKs that address this vulnerability.
3
Who is affected by CVE-2024-27241?
CVE-2024-27241 affects authenticated users of Zoom Apps and SDKs.
4
What type of vulnerability is CVE-2024-27241?
CVE-2024-27241 is an improper input validation vulnerability.
5
What can an attacker achieve with CVE-2024-27241?
An attacker can use CVE-2024-27241 to conduct a denial of service via network access.