← back
CVE-2023-39204mediumCWE-120

CVE-2023-39204

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.3epss 1.1%
exploitation probability
1.1%top 39% of all CVEs
observed exploitation
nono source reports it
In short

A buffer overflow vulnerability in Zoom clients allows an unauthenticated attacker to crash the application by sending specially crafted data over the network, causing a denial of service.

Technical detail

Buffer overflow in Zoom client network handling (CWE-120) enables unauthenticated DoS via malformed network packets; no authentication required, but attacker must have network access to the affected client, resulting in application crash or instability.

Summary generated and translated by AI from the official description.
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L