CVE-2026-53414 PUBLISHED

Zoom Clients - Buffer Over-read

Assigner: Zoom
Reserved: 09.06.2026 Published: 11.08.2026 Updated: 11.08.2026

Missing bounds check in the annotator function of Zoom Clients allows buffer over-read, which may allow a meeting participant to conduct a denial of service on another participant via network access.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Score: 6.5

Product Status

Vendor Zoom Communications
Product Zoom Clients
Versions Default: unaffected
  • Version see references is affected

References

Problem Types

  • CWE-126 Buffer over-read CWE