CVE-2024-39822: Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Sensitive Information Exposure
Published Aug 14, 2024
·Updated
Sensitive information exposure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct an information disclosure via network access.
Affected Software
12 affected components
Zoom Meeting Software Development Kit Android<6.0.12
Zoom Meeting Software Development Kit Iphone Os<6.0.12
Zoom Rooms Ipados<6.1.0
Zoom Rooms Macos<6.1.0
Zoom Rooms Windows<6.1.0
Zoom Rooms Controller Android<6.1.0
Zoom Rooms Controller Linux<6.1.0
Zoom Rooms Controller Macos<6.1.0
Zoom Rooms Controller Windows<6.1.0
Zoom Workplace Android<6.0.12
Zoom Workplace Iphone Os<6.0.12
Zoom Workplace Desktop Linux<6.0.12
Event History
Aug 14, 2024
CVE Published
via MITRE·04:38 PM
Data Sourced
via MITRE·04:38 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-39822?
CVE-2024-39822 is classified as a vulnerability that allows sensitive information exposure.
2
How do I fix CVE-2024-39822?
To fix CVE-2024-39822, update the affected Zoom Workplace Apps, SDKs, Rooms Clients, or Rooms Controllers to the latest versions.
3
Which versions are affected by CVE-2024-39822?
CVE-2024-39822 affects versions prior to 6.0.12 for Zoom Meeting SDK and prior to 6.1.0 for Zoom Rooms and Rooms Controllers.
4
Can CVE-2024-39822 be exploited by unauthenticated users?
No, CVE-2024-39822 requires an authenticated user to conduct information disclosure.
5
What types of Zoom products are impacted by CVE-2024-39822?
CVE-2024-39822 impacts the Zoom Meeting SDK, Zoom Rooms, Rooms Controllers, and Zoom Workplace Apps.