Local Privilege Escalation in Zoom Rooms for macOS Clients
CVE-2022-36926

8.8HIGH

Key Information:

Vendor
Zoom
Vendor
CVE Published:
9 January 2023

Summary

A vulnerability exists in Zoom Rooms for macOS prior to version 5.11.3, which allows a low-privileged local user to escalate their privileges to root. This exploitation could lead to unauthorized access and potential manipulation of system controls, highlighting the need for timely updating and patch management strategies.

Affected Version(s)

Zoom Rooms for macOS < 5.11.3

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.