We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-22780

Zoom Chat Susceptible to Zip Bombing



AssignerZoom
Reserved2022-01-07
Published2022-02-09
Updated2024-09-16

Description

The Zoom Client for Meetings chat functionality was susceptible to Zip bombing attacks in the following product versions: Android before version 5.8.6, iOS before version 5.9.0, Linux before version 5.8.6, macOS before version 5.7.3, and Windows before version 5.6.3. This could lead to availability issues on the client host by exhausting system resources.



MEDIUM: 4.7 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L

Product status

Any version before 5.8.6
affected

Any version before 5.9.0
affected

Any version before 5.8.6
affected

Any version before 5.7.3
affected

Any version before 5.6.3
affected

Credits

Johnny Yu of Walmart Global Tech

References

https://explore.zoom.us/en/trust/security/security-bulletin

cve.org CVE-2022-22780

nvd.nist.gov CVE-2022-22780

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-22780

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.