CVE-2024-45422: Zoom Apps - Improper Input Validation
Published Nov 19, 2024
·Updated
Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated user to conduct a denial of service via network access.
Affected Software
23 affected components
Zoom Zoom Apps<6.2.0
Zoom Meeting Software Development Kit Android<6.2.0
Zoom Meeting Software Development Kit Iphone Os<6.2.0
Zoom Meeting Software Development Kit Linux<6.2.0
Zoom Meeting Software Development Kit Macos<6.2.0
Zoom Meeting Software Development Kit Windows<6.2.0
Zoom Rooms Ipados<6.2.0
Zoom Rooms Macos<6.2.0
Zoom Rooms Windows<6.2.0
Zoom Rooms Controller Android<6.2.0
Zoom Rooms Controller Linux<6.2.0
Zoom Rooms Controller Macos<6.2.0
Zoom Rooms Controller Windows<6.2.0
Zoom Video Software Development Kit Android<6.2.0
Zoom Video Software Development Kit Iphone Os<6.2.0
Zoom Video Software Development Kit Linux<6.2.0
Zoom Video Software Development Kit Macos<6.2.0
Zoom Video Software Development Kit Windows<6.2.0
Zoom Workplace Android<6.2.0
Zoom Workplace Iphone Os<6.2.0
Zoom Workplace Desktop Linux<6.2.0
Zoom Workplace Desktop Macos<6.2.0
Zoom Workplace Desktop Windows<6.2.0
Event History
Nov 19, 2024
CVE Published
via MITRE·07:45 PM
Data Sourced
via MITRE·07:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-45422?
CVE-2024-45422 has been classified as a denial of service vulnerability affecting Zoom Apps before version 6.2.0.
2
How do I fix CVE-2024-45422?
To fix CVE-2024-45422, upgrade to Zoom Apps version 6.2.0 or later.
3
What type of vulnerability is CVE-2024-45422?
CVE-2024-45422 is categorized as an improper input validation vulnerability.
4
Who is affected by CVE-2024-45422?
Any user of Zoom Apps versions prior to 6.2.0 is potentially affected by CVE-2024-45422.
5
Can CVE-2024-45422 be exploited remotely?
Yes, CVE-2024-45422 can be exploited by an unauthenticated user with network access.