Skip to main content

Incorrect Ownership Assignment

CVE-2024-45417

Severity Medium
Score 6/10

Summary

Uncontrolled resource consumption in the installer for some Zoom apps for macOS before version 6.1.5 may allow a privileged user to conduct a disclosure of information via local access.

  • LOW
  • LOCAL
  • HIGH
  • UNCHANGED
  • NONE
  • HIGH
  • HIGH
  • NONE

CWE-708 - Incorrect Ownership Assignment

The software assigns an owner to a resource, but the owner is outside of the intended control sphere.

References

Advisory Timeline

  • Published