E rua nga whakaraeraetanga kua kitea e tetahi kairangahau haumarutanga i roto i te taputapu whakahou rorohiko waea ataata a Zoom mo te macOS i taea ai te uru pakiaka. I muri i te whakaraeraetanga o te kamupene, ka kitea e te tangata he whakaraeraetanga hou.
Ko te kairangahau haumarutanga a Patrick Wardle i korero i ana kitenga i te huihuinga hacking DefCon i Las Vegas. I reira, i whakamarama ia me pehea te karo i te haki hainatanga o te taputapu whakahou aunoa a Zoom mo te macOS. I te whakaraeraetanga tuatahi, CVE-2022-28751, me huri noa e nga kaiwhakamahi te ingoa konae o tetahi konae kia rite ai nga uara ki te tiwhikete e rapuhia ana e te taputapu whakahou. "Me hoatu e koe he ingoa ki te rorohiko, ka mutu koe i te wa poto," ka kii te tangata ki a Wired.
I korero a Wardle ki a Zoom mo te whakaraeraetanga i te mutunga o te tau 2021 me te whakatika i tukuna e te kamupene he whakaraeraetanga hou, e ai ki a Wardle. I taea e ia te tiki i a Zoom's updater.app mo MacOS kia whakaae ki tetahi putanga tawhito o te rorohiko waea ataata, no reira ka timata te tohatoha i taua putanga hei utu mo te putanga hou. I tupono ohorere nga roopu kino ki te whakaraerae i nga whakaraeraetanga i roto i nga rorohiko Zoom tawhito ma te whakaraeraetanga CVE2022-22781. Kati, na te mea kua whakatikahia e Zoom nga whakaraeraetanga e rua i runga ake nei ma te whakahou.
Engari i kitea ano e Wardle tetahi whakaraeraetanga ki reira, CVE-2022-28756. E ai ki te tangata, i tenei wa ka taea te whakarereke i te kete i muri i te manatokotanga o tetahi kete rorohiko a te kaiwhakataki Zoom. Ka mau tonu te paanui rorohiko i ona whakaaetanga panui-tuhi i roto i te macOS ka taea tonu te whakarereke i waenga i te haki kiripiri me te whakaurunga. I tenei wa, i whakautu a Zoom ki nga whakakitenga hou a Wardle. E ai ki te kamupene kei te mahi i te otinga.