Heap Overflow Vulnerability in Zoom Workplace Apps
CVE-2025-27440

8.5HIGH

Key Information:

Vendor
CVE Published:
11 March 2025

Summary

A heap overflow vulnerability exists in certain versions of Zoom Workplace Apps that can be exploited by authenticated users. By leveraging network access, an attacker could potentially elevate their privileges, leading to unauthorized operations within the application environment. It is crucial for users to apply appropriate updates to mitigate the risks associated with this vulnerability and ensure the security of their data.

Affected Version(s)

Zoom Workplace Apps iOS See references.

References

CVSS V3.1

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.