CVE-2024-42436: Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Buffer Overflow
Published Aug 14, 2024
·Updated
Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.
Affected Software
18 affected components
Zoom Meeting Software Development Kit Android<6.1.0
Zoom Meeting Software Development Kit Iphone Os<6.1.0
Zoom Meeting Software Development Kit Macos<6.1.0
Zoom Meeting Software Development Kit Windows<6.1.0
Zoom Rooms Ipados<6.1.0
Zoom Rooms Macos<6.1.0
Zoom Rooms Windows<6.1.0
Zoom Rooms Controller Android<6.1.0
Zoom Rooms Controller Linux<6.1.0
Zoom Rooms Controller Macos<6.1.0
Zoom Rooms Controller Windows<6.1.0
Zoom Workplace Android<6.1.0
Zoom Workplace Iphone Os<6.1.0
Zoom Workplace Desktop Linux<6.1.0
Zoom Workplace Desktop Macos<6.1.0
Zoom Workplace Desktop Windows<6.1.0
Zoom Workplace Virtual Desktop Infrastructure Windows<5.17.14
Zoom Workplace Virtual Desktop Infrastructure Windows>=6.0<6.0.11
Event History
Aug 14, 2024
CVE Published
via MITRE·04:41 PM
Data Sourced
via MITRE·04:41 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-42436?
CVE-2024-42436 is classified as a high severity vulnerability due to potential denial of service attacks.
2
How do I fix CVE-2024-42436?
To mitigate CVE-2024-42436, upgrade all affected Zoom applications and SDKs to version 6.1.0 or later.
3
Which products are affected by CVE-2024-42436?
CVE-2024-42436 affects various Zoom products, including the Zoom Meeting SDK, Zoom Rooms, and Zoom Workplace applications.
4
Can CVE-2024-42436 be exploited remotely?
Yes, CVE-2024-42436 can be exploited remotely by authenticated users with network access.
5
What type of vulnerability is CVE-2024-42436?
CVE-2024-42436 is a buffer overflow vulnerability that can lead to instability in Zoom applications.