Synaptics
synaptics
8 CVEs • 7 products
Products (7)
Click to collapseToggle
Products (7)
Click to collapse
CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Use of encryption key derived from static information in Synaptics Fingerprint Driver allows an attacker to set up a TLS session with the fingerprint sensor and send restricted commands to the fingerprint sensor. This...Show more |
It is possible to sideload a compromised DLL during the installation at elevated privilege. |
Improper Input Validation vulnerability in synaTEE.signed.dll of Synaptics Fingerprint Driver allows a local authorized attacker to overwrite a heap tag, with potential loss of confidentiality. This issue affects: Synapt...Show more |
293cx BoomCaphyon+26 more70Advanced Installer Angry Birds SpaceArchive Password Recovery+67 moreJul 9, 2026 Jun 6, 2022 N/A· v4 8.1 HIGH· v3 5.1 MEDIUM· v2 Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in...Show more |
3Hp LenovoSynaptics112Envy 13t Ah100 Firmware Envy 13t Aq100 FirmwareEnvy 17t Bw000 Firmware+109 moreJun 17, 2026 Jul 22, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Incorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prior to 2019-11-15) allows a local user to execute arbitrary code in the enclave (that can compromise c...Show more |
3Hp LenovoSynaptics133Elite Slice Firmware Elite X2 1012 G2 FirmwareElite X2 1013 G3 Firmware+130 moreJun 17, 2026 Jul 22, 2020 N/A· v4 6.0 MEDIUM· v3 3.6 LOW· v2 Incorrect access control in the firmware of Synaptics VFS75xx family fingerprint sensors that include external flash (all versions prior to 2019-11-15) allows a local administrator or physical attacker to compromise the...Show more |
An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCHU audio drivers on Lenovo platforms that could allow an administrative user to...Show more |
Incorrect access control in the CxUtilSvc component of the Synaptics Sound Device drivers prior to version 2.29 allows a local attacker to increase access privileges to the Windows Registry via an unpublished API. |