Zoom Chat Susceptible to Zip Bombing
13Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 4.7epss 1.7%
probabilidad de explotación
1.7%top 25% de las CVE
explotación observada
noninguna fuente lo reporta
The Zoom Client for Meetings chat functionality was susceptible to Zip bombing attacks in the following product versions: Android before version 5.8.6, iOS before version 5.9.0, Linux before version 5.8.6, macOS before version 5.7.3, and Windows before version 5.6.3. This could lead to availability issues on the client host by exhausting system resources.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L
Productos afectados
Zoom Video Communications Inc · Zoom Client for Meetings for AndroidZoom Video Communications Inc · Zoom Client for Meetings for iOSZoom Video Communications Inc · Zoom Client for Meetings for LinuxZoom Video Communications Inc · Zoom Client for Meetings for macOSZoom Video Communications Inc · Zoom Client for Meetings for Windows