Update Zoom on Mac ASAP
2022-08-16 11:25 am![[personal profile]](https://www.dreamwidth.org/img/silk/identity/user.png)
According to this article posted yesterday on Ars Technica, there is a major security hole in Zoom for the Mac. Zoom issued a security bulletin on Saturday. The article suggests that you should download the update directly from Zoom or click on your menu bar options to "Check for updates" rather than waiting for the auto-update, although if you've already updated since Saturday you're probably ok.
The article goes into more detail; tl;dr is that Zoom's installer is owned by and runs as root, and has a major bug that allows unsigned updates to be installed.
Resources
- Download Center - Zoom
- Zoom security bulletin ZSB-22018 08/13/2022
- Update Zoom for Mac now to avoid root-access vulnerability | Ars Technica
Another fine post from
The Computer Curmudgeon (also at
computer-curmudgeon.com).
Donation buttons in profile.
no subject
Date: 2022-08-16 08:43 pm (UTC)Thankfully, I got prompted by MacUpdater that Zoom had an update available. Just as well, since I don't (currently) use Zoom that often.