CVE-2025-30671: Zoom Workplace Apps for Windows - Null Pointer
Published Apr 8, 2025
·Updated
Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.
Affected Software
7 affected components
Zoom Workplace Apps for Windows
Zoom Meeting Software Development Kit Windows<6.3.10
Zoom Rooms Windows<6.4.0
Zoom Rooms Controller Windows<6.4.0
Zoom Workplace Desktop Windows<6.3.10
Zoom Workplace Virtual Desktop Infrastructure Windows<6.1.16
Zoom Workplace Virtual Desktop Infrastructure Windows>=6.1.17<6.2.12
Event History
Apr 8, 2025
CVE Published
via MITRE·04:21 PM
Data Sourced
via MITRE·04:21 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-30671?
The severity of CVE-2025-30671 is classified as medium, indicating a potential denial of service impact.
2
How do I fix CVE-2025-30671?
To fix CVE-2025-30671, update your Zoom Workplace Apps for Windows to the latest version provided by Zoom.
3
What systems are affected by CVE-2025-30671?
CVE-2025-30671 affects Zoom Workplace Apps for Windows specifically.
4
Can CVE-2025-30671 be exploited by unauthenticated users?
No, CVE-2025-30671 requires an authenticated user to exploit the vulnerability.
5
What type of vulnerability is CVE-2025-30671?
CVE-2025-30671 is a null pointer dereference vulnerability that can lead to a denial of service.