CVE-2018-15532: Infoleak
Published Mar 17, 2019
·Updated
SynTP.sys in Synaptics Touchpad drivers before 2018-06-06 allows local users to obtain sensitive information about freed kernel addresses.
Affected Software
1 affected component
HP Synaptics TouchPad driver<=2018-06-06
Event History
Mar 17, 2019
CVE Published
via MITRE·09:23 PM
Data Sourced
via MITRE·09:23 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-15532?
CVE-2018-15532 has been designated a moderate severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2018-15532?
To mitigate CVE-2018-15532, users should upgrade to the latest Synaptics Touchpad drivers released after June 6, 2018.
3
Who is affected by CVE-2018-15532?
Local users of affected HP Synaptics Touchpad drivers prior to version June 6, 2018, are at risk from CVE-2018-15532.
4
What type of information is exposed by CVE-2018-15532?
CVE-2018-15532 allows local users to obtain sensitive information about freed kernel addresses.
5
Is there a workaround for CVE-2018-15532?
There are no known workarounds for CVE-2018-15532; updating the drivers is the recommended solution.