CVE-2025-27440

CVSS 3.1 Score 8.5 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 124

Summary

CVE-2025-27440 is a heap overflow vulnerability affecting some Zoom Workplace Apps. An authenticated user can exploit this issue, possibly gaining elevated privileges through network access. The vulnerability arises from improper handling of specially crafted input data, resulting in memory corruption and potential privilege escalation. Zoom urges users to update their apps to the latest version to mitigate this risk. Exploitation of this flaw could lead to significant data breaches or unauthorized system access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share