Zoom Workplace Apps - Out-of-bounds Write

  • ZSB-25003
  • CVE-2025-0144
  • Low
  • 3.1
  • CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N

Out-of-bounds write in some Zoom Workplace Apps may allow an authorized user to conduct a loss of integrity via network access.

 

Users can help keep themselves secure by applying the latest updates available at https://zoom.us/download.

  • Zoom Workplace App for Windows before version 6.2.5
  • Zoom Workplace App for macOS before version 6.2.5
  • Zoom Workplace App for Linux before version 6.2.5
  • Zoom Workplace App for iOS before version 6.2.5
  • Zoom Workplace App for Android before version 6.2.5
  • Zoom Workplace VDI Client for Windows before version 6.1.13 (except 6.0.15)
  • Zoom Rooms Client for Windows before version 6.2.5
  • Zoom Rooms Client for macOS before version 6.2.5
  • Zoom Rooms Client for iPad before version 6.2.5
  • Zoom Rooms Controller for Windows before version 6.2.5
  • Zoom Rooms Controller for macOS before version 6.2.5
  • Zoom Rooms Controller for Linux before version 6.2.5
  • Zoom Rooms Controller for Android before version 6.2.5
  • Zoom Meeting SDK for Windows before version 6.2.5
  • Zoom Meeting SDK for iOS before version 6.2.5
  • Zoom Meeting SDK for Android before version 6.2.5
  • Zoom Meeting SDK for macOS before version 6.2.5
  • Zoom Meeting SDK for Linux before version 6.2.5
  • Zoom Video SDK for Windows before version 6.2.5
  • Zoom Video SDK for macOS before version 6.2.5
  • Zoom Video SDK for Android before version 6.2.5
  • Zoom Video SDK for iOS before version 6.2.5
  • Zoom Video SDK for Linux before version 6.2.5

Reported by Zoom Offensive Security.

Revision Date Description
1.0 01/14/2025

Initial publication.