Zoom On-Premise Deployments: Stack Buffer Overflow in Meeting Connector
Vulnerability Description
Zoom On-Premise Meeting Connector Zone Controller (ZC) before version 4.8.20220419.112 fails to properly parse STUN error codes, which can result in memory corruption and could allow a malicious actor to crash the application. In versions older than 4.8.12.20211115, this vulnerability could also be leveraged to execute arbitrary code.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-28750
Credits & Attribution
No credits recorded in the NVD database.
More from Zoom Video Communications Inc
View All →Affected Vendor
Zoom Video Communications Inc
View all reports →