PT-2024-29947 · Zoom · Zoom Meeting Sdk+1

Published

2024-08-13

·

Updated

2024-08-29

·

CVE-2024-42439

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Zoom Workplace Desktop App for macOS versions prior to 6.1.0 Zoom Meeting SDK for macOS versions prior to 6.1.0
Description The issue is related to an untrusted search path in the installer for the affected software, which may allow a privileged user to conduct an escalation of privilege via local access.
Recommendations For Zoom Workplace Desktop App for macOS versions prior to 6.1.0, update to version 6.1.0 or later. For Zoom Meeting SDK for macOS versions prior to 6.1.0, update to version 6.1.0 or later.

Fix

Untrusted Search Path

Weakness Enumeration

Related Identifiers

BDU:2025-02743
CVE-2024-42439

Affected Products

Zoom Meeting Sdk
Zoom Workplace Desktop App