Page 1 of 1

Zoom Patches Critical Vulnerability in Windows Applications

Posted: Wed Feb 14, 2024 2:23 pm
by rbc
Video messaging giant Zoom on Tuesday announced patches for seven vulnerabilities in its desktop and mobile applications, including a critical-severity bug in Windows software.

The critical issue, tracked as CVE-2024-24691 (CVSS score of 9.6), is described as an improper input validation that could allow an attacker with network access to escalate privileges.

Zoom’s Desktop Client for Windows before version 5.16.5, VDI Client for Windows before version 5.16.10 (excluding 5.14.14 and 5.15.12), Rooms Client for Windows before version 5.17.0, and Meeting SDK for Windows before version 5.16.5 are affected, the company notes in its advisory.
[...]
Zoom Patches Critical Vulnerability in Windows Applications