Improper verification of cryptographic signature in the installer for Zoom Workplace VDI Client for Windows may allow an authenticated user to conduct an escalation of privilege via local access.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/ZSB-25042 |
|
History
Fri, 14 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 14 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows Zoom Zoom workplace Zoom workplace App Zoom zoom Zoom zoom Client |
|
| Vendors & Products |
Microsoft
Microsoft windows Zoom Zoom workplace Zoom workplace App Zoom zoom Zoom zoom Client |
Thu, 13 Nov 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper verification of cryptographic signature in the installer for Zoom Workplace VDI Client for Windows may allow an authenticated user to conduct an escalation of privilege via local access. | |
| Title | Zoom Workplace VDI Client for Windows - Improper Verification of Cryptographic Signature | |
| Weaknesses | CWE-347 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published: 2025-11-13T14:35:39.025Z
Updated: 2025-11-14T16:51:22.757Z
Reserved: 2025-11-10T19:56:35.266Z
Link: CVE-2025-64740
Updated: 2025-11-13T15:40:13.168Z
Status : Awaiting Analysis
Published: 2025-11-13T15:15:53.820
Modified: 2025-11-14T16:42:03.187
Link: CVE-2025-64740
No data.