CVE-2023-39206: Zoom Meetings
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Affected products
- Zoom Meetings: before 5.16.0 (fixed in 5.16.0)
- Zoom Rooms: before 5.16.0 (fixed in 5.16.0)
- Zoom Video Software Development Kit: before 1.9.0 (fixed in 1.9.0)
- Zoom Virtual Desktop Infrastructure: before 5.14.13 (fixed in 5.14.13); from 5.15.0, before 5.15.11 (fixed in 5.15.11)
- Zoom Zoom: before 5.16.0 (fixed in 5.16.0)
Published 2023-11-14. Last modified 2026-06-17.