CVE-2020-11877
7.5HIGHairhost.exe in Zoom Client for Meetings 4.6.11 uses 3423423432325249 as the Initialization Vector (IV) for AES-256 CBC encryption. NOTE: the vendor states that this IV is used only within unreachable
Veröffentlicht: 4/17/2020Aktualisiert: 11/21/2024
Beschreibung
airhost.exe in Zoom Client for Meetings 4.6.11 uses 3423423432325249 as the Initialization Vector (IV) for AES-256 CBC encryption. NOTE: the vendor states that this IV is used only within unreachable code
KI-AnalyseKI-gestützt
Betroffene Produkte
zoommeetings
4.6.11
Referenzen
- https://dev.io/posts/zoomzoo/ExploitThird Party Advisory
- https://dev.io/posts/zoomzoo/ExploitThird Party Advisory