Conexant Systems mictray64 task, as used on HP Elite, EliteBook, ProBook, and ZBook systems, leaks sensitive data (keystrokes) to any process. In mictray64.exe (mic tray icon) 1.0.0.46, a LowLevelKeyboardProc Windows hook is used to capture keystrokes. This data is leaked via unintended channels: debug messages accessible to any process that is running in the current user session, and filesystem access to C:\Users\Public\MicTray.log by any process.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-05-12T06:54:00

Updated: 2024-08-05T16:34:22.834Z

Reserved: 2017-04-30T00:00:00

Link: CVE-2017-8360

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-05-12T07:29:00.187

Modified: 2017-07-08T01:29:18.210

Link: CVE-2017-8360

cve-icon Redhat

No data.