Back to search
CVE-2019-18619
Published: Jul 22, 2020
Modified: Aug 5, 2024
PUBLISHED
Description
Incorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prior to 2019-11-15) allows a local user to execute arbitrary code in the enclave (that can compromise confidentiality of enclave data) via APIs that accept invalid pointers.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://www.synaptics.com/company/blog/
x_refsource_MISC
https://support.lenovo.com/us/en/product_security/LEN-31372
x_refsource_MISC
https://support.hp.com/hk-en/document/c06696568
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now