Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/zsb-25005/ |
|
History
Fri, 01 Aug 2025 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zoom
Zoom meeting Software Development Kit Zoom rooms Zoom rooms Controller Zoom video Software Development Kit Zoom workplace Desktop |
|
| CPEs | cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:macos:*:* cpe:2.3:a:zoom:rooms:*:*:*:*:*:macos:*:* cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:macos:*:* cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:macos:*:* cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:macos:*:* |
|
| Vendors & Products |
Zoom
Zoom meeting Software Development Kit Zoom rooms Zoom rooms Controller Zoom video Software Development Kit Zoom workplace Desktop |
Thu, 30 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Jan 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access. | |
| Title | Zoom Workplace app for macOS - Symlink Following | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published: 2025-01-30T19:47:26.128Z
Updated: 2025-01-30T21:22:42.397Z
Reserved: 2024-12-23T21:42:55.340Z
Link: CVE-2025-0146
Updated: 2025-01-30T21:22:38.996Z
Status : Analyzed
Published: 2025-01-30T20:15:34.907
Modified: 2025-08-01T01:25:11.140
Link: CVE-2025-0146
No data.