Unknown
CVE-2019-18619
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2019-18619
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Incorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prior to 2019-11-15) allows a local user to execute arbitrary code in the enclave (that can compromise confidentiality of enclave data) via APIs that accept invalid pointers.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Products
- envy - 13t-ah100 firmware,
- envy - 13t-aq100 firmware,
- envy - 17t-bw000 firmware,
- envy - 17t-ce000 firmware,
- envy - 17t-ce100 firmware,
- envy 13-ah0xxx firmware,
- envy 13-ah1xxx firmware,
- envy 13-aq0xxx firmware,
- envy 13-aq1xxx firmware,
- envy 15-cn0xxx x360 firmware,
- envy 15-cn1xxx x360 firmware,
- envy 15-dr0xxx x360 (validity fps) firmware,
- envy 15-dr0xxx x360 firmware,
- envy 15-dr1xxx x360 (validity fps) firmware,
- envy 15-dr1xxx x360 firmware,
- envy 15m-cn0xxx x360 firmware,
- envy 15m-dr0xxx x360 (validity fps) firmware,
- envy 15m-dr0xxx x360 firmware,
- envy 15m-dr1xxx x360 (validity fps) firmware,
- envy 15m-dr1xxx x360 firmware,
- envy 17-bw0xxx firmware,
- envy 17-ce0xxx firmware,
- envy 17-ce1xxx firmware,
- envy 17m-bw0xxx firmware,
- envy 17m-ce0xxx firmware,
- envy 17m-ce1xxx firmware,
- envy x360 - 15t-cn000 firmware,
- envy x360 - 15t-dr000 (validity fps) firmware,
- envy x360 - 15t-dr000 firmware,
- envy x360 - 15t-dr100 (validity fps) firmware,
- envy x360 - 15t-dr100 firmware,
- pavilion 14-cd1xxx x360 firmware,
- pavilion 14-cd2xxx x360 firmware,
- pavilion 14-dh0xxx x360 firmware,
- pavilion 14m-cd0xxx x360 firmware,
- pavilion 14m-dh0xxx x360 firmware,
- pavilion 15 firmware,
- pavilion x360 - 14t-cd000 firmware,
- pavilion x360 - 15t-dq000 firmware,
- pavilion x360 - 15t-dq100 firmware,
- pavilion x360 14t-cd100 firmware,
- pavilion x360 14t-dh000 firmware,
- spectre x360 firmware,
- thankpad a475 firmware,
- thankpad a485 firmware,
- thinkpad 25 firmware,
- thinkpad a275 firmware,
- thinkpad e480 firmware,
- thinkpad e485 firmware,
- thinkpad e490 firmware,
- thinkpad e490s firmware,
- thinkpad e580 firmware,
- thinkpad e585 firmware,
- thinkpad e590 firmware,
- thinkpad l480 firmware,
- thinkpad l580 firmware,
- thinkpad p1 firmware,
- thinkpad p1 gen 2 firmware,
- thinkpad p43s firmware,
- thinkpad p50 firmware,
- thinkpad p51 firmware,
- thinkpad p51s (20hx) firmware,
- thinkpad p51s (20jx) firmware,
- thinkpad p51s (20kx) firmware,
- thinkpad p52 firmware,
- thinkpad p52s firmware,
- thinkpad p53 firmware,
- thinkpad p53s firmware,
- thinkpad p70 firmware,
- thinkpad p71 (20hx) firmware,
- thinkpad p72 firmware,
- thinkpad p73 firmware,
- thinkpad r490 firmware,
- thinkpad r590 firmware,
- thinkpad s1 3rd firmware,
- thinkpad s3 firmware,
- thinkpad t25 (20k7) firmware,
- thinkpad t460p firmware,
- thinkpad t460s firmware,
- thinkpad t470 (20hx) firmware,
- thinkpad t470 (20jx) firmware,
- thinkpad t470p firmware,
- thinkpad t470s (20hx) firmware,
- thinkpad t470s (20jx) firmware,
- thinkpad t480 firmware,
- thinkpad t480s firmware,
- thinkpad t490 firmware,
- thinkpad t490s firmware,
- thinkpad t570 (20hx) firmware,
- thinkpad t570(20jx) firmware,
- thinkpad t580 firmware,
- thinkpad t590 firmware,
- thinkpad x1 carbon (20hx) firmware,
- thinkpad x1 carbon (20kx) firmware,
- thinkpad x1 carbon firmware,
- thinkpad x1 extreme 2nd firmware,
- thinkpad x1 extreme firmware,
- thinkpad x1 tablet (20jx) firmware,
- thinkpad x1 tablet firmware,
- thinkpad x1 yoga (20jx) firmware,
- thinkpad x1 yoga 3rd gen firmware,
- thinkpad x1 yoga 4th gen firmware,
- thinkpad x1 yoga firmware,
- thinkpad x270 firmware,
- thinkpad x280 firmware,
- thinkpad x380 yoga firmware,
- thinkpad x390 firmware,
- thinkpad x390 yoga firmware,
- thinkpad yoga 260 firmware,
- thinkpad yoga 370 firmware,
- thinkpad yoga s1 firmware,
- vfs75xx firmware 5.2.225.26,
- vfs75xx firmware 5.2.318.26,
- vfs75xx firmware 5.2.3530.26,
- vfs75xx firmware 5.2.524.26,
- vfs75xx firmware 5.3.3539.26,
- vfs75xx firmware 5.5.10.1093,
- vfs75xx firmware 5.5.11.1106,
- vfs75xx firmware 5.5.15.1102,
- vfs75xx firmware 5.5.2734.1050,
- vfs75xx firmware 5.5.2811.1050,
- vfs75xx firmware 5.5.3.1116,
- vfs75xx firmware 5.5.38.1058,
- vfs75xx firmware 5.5.8.1096,
- vfs75xx firmware 5.6.23.1000,
- vfs75xx firmware 6.0.14.1108,
- vfs75xx firmware 6.0.32.1104,
- vfs75xx firmware 6.0.42.1107
Weaknesses
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: