Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

Zoom Clients for Windows Vulnerability Exposes Users to DoS Attacks

Recently, two vulnerabilities have been discovered in specific Zoom Clients for Windows, which could enable attackers to launch Denial of Service (DoS) attacks.

Recently, two vulnerabilities have been discovered in specific Zoom Clients for Windows, which could enable attackers to launch Denial of Service (DoS) attacks.

These flaws, tracked under CVE-2025-49464 and CVE-2025-46789 , were reported by security researcher fre3dm4n and carry a Medium severity rating with a CVSS score of 6.5 each.

Both vulnerabilities stem from a classic buffer overflow issue in the affected Zoom products. This flaw could enable an authorized user with network access to exploit the system, causing a DoS condition that disrupts service availability.

The CVSS vector string for both issues, CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H, indicates a high impact on availability, though confidentiality and integrity remain unaffected. While the attack requires low privileges and no user interaction, the potential for disruption is significant for organizations relying on Zoom for communication.

The vulnerabilities impact multiple Zoom products for Windows, with slight variations in affected versions between the two CVEs. Below is a breakdown of the affected software:

CVE-2025-49464 :

Both vulnerabilities stem from a classic buffer overflow issue in the affected Zoom products.
Daniel Brooks · Thehackingpost

Zoom Workplace for Windows before version 6.4.0 Zoom Workplace VDI for Windows before version 6.3.10 (except 6.1.7 and 6.2.15) Zoom Rooms for Windows before version 6.4.0 Zoom Rooms Controller for Windows before version 6.4.0 Zoom Meeting SDK for Windows before version 6.4.0

CVE-2025-46789 :

Zoom Workplace for Windows before version 6.4.5 Zoom Workplace VDI for Windows before version 6.3.12 (except 6.2.15) Zoom Rooms for Windows before version 6.4.5 Zoom Rooms Controller for Windows before version 6.4.5 Zoom Meeting SDK for Windows before version 6.4.5

Zoom has acknowledged these vulnerabilities and released updates to address them. Users are strongly urged to apply the latest patches to protect their systems. The updates are available for download through Zoom’s official portal.

Advertisement

Ensuring that software is up to date is a critical step in safeguarding against potential exploits that could interrupt business operations or personal communications.

These vulnerabilities highlight the ongoing challenges in securing widely used communication tools, especially as remote work and virtual meetings remain integral to many organizations.

Buffer overflow issues, while classic, continue to pose risks when not addressed promptly. For Zoom users, particularly those managing large teams or sensitive operations, staying vigilant about software updates is essential.

Investigate live malware behavior, trace every step of an attack, and make faster, smarter security decisions -> Try ANY.RUN now

Based on reporting by Cyber Security News.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories