CVE-2025-30665: Zoom Workplace Apps for Windows - NULL Pointer Dereference
Published May 14, 2025
·Updated
NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.
Affected Software
8 affected components
Zoom Workplace Apps for Windows
Zoom Meeting Software Development Kit Windows<6.4.0
Zoom Rooms Windows<6.4.0
Zoom Rooms Controller Windows<6.4.0
Zoom Workplace Desktop Windows<6.4.0
Zoom Workplace Virtual Desktop Infrastructure Windows<6.1.17
Zoom Workplace Virtual Desktop Infrastructure Windows>=6.1.18<6.2.13
Zoom Workplace Virtual Desktop Infrastructure Windows>=6.2.14<6.3.10
Event History
May 14, 2025
CVE Published
via MITRE·05:35 PM
Data Sourced
via MITRE·05:35 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-30665?
The severity of CVE-2025-30665 is rated as medium due to its potential to cause a denial of service.
2
How do I fix CVE-2025-30665?
To fix CVE-2025-30665, users should update to the latest version of Zoom Workplace Apps for Windows provided by the vendor.
3
Who is affected by CVE-2025-30665?
CVE-2025-30665 affects authenticated users of Zoom Workplace Apps for Windows.
4
What kind of attack does CVE-2025-30665 enable?
CVE-2025-30665 enables a denial of service attack via network access for authenticated users.
5
Is there a workaround for CVE-2025-30665?
Currently, there are no official workarounds for CVE-2025-30665 other than updating the software.