Man-in-the-Middle (MitM) attack in Zoom Video Communications, Inc. products - CVE-2023-22885
Published: March 15, 2023
Vulnerability details
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to the way the Zoom client handles SMB shares. If a victim saves a local recording to an SMB location and later opens it using a link from Zoom’s web portal, an attacker positioned on an adjacent network to the victim client could set up a malicious SMB server to respond to client requests, causing the client to execute attacker controlled executables.
Affected software
Zoom Rooms Client for macOS
Zoom Workplace Desktop App for Windows
Zoom Workplace Desktop App for macOS
Zoom Workplace Desktop App for Linux
Zoom Workplace App for iOS
Zoom Workplace App for Android
Virtual Desktop Infrastructure (VDI)
How to mitigate CVE-2023-22885
Zoom Rooms Client for macOS - update to 5.13.5 2258
Zoom Workplace App for iOS - update to 5.13.5 6434
Zoom Workplace Desktop App for Windows - update to 5.13.5 12053
Zoom Workplace Desktop App for macOS - update to 5.13.5 14826
Virtual Desktop Infrastructure (VDI) - update to 5.13.10
Zoom Workplace App for Android - update to 5.13.5 11533
Zoom Workplace Desktop App for Linux - update to 5.13.5 431