U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2017-8360

Change History

Initial Analysis by NIST 5/19/2017 3:36:48 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:a:conexant:mictray64:1.0.0.46:*:*:*:*:*:*:* (and previous)
     OR
          cpe:2.3:h:hp:elite_x2_1012_g1:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_1030_g1:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_725_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_745_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_755_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_820_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_828_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_840_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_848_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_850_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_folio_1040_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:elitebook_folio_g1:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_430_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_440_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_446_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_450_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_455_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_470_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_640_g2:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_645_g2:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_650_g2:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:probook_655_g2:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:zbook_15_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:zbook_15u_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:zbook_17_g3:-:*:*:*:*:*:*:*
          cpe:2.3:h:hp:zbook_studio_g3:-:*:*:*:*:*:*:*
     OR
          cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*:*
          cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Added CVSS V3

								
							
							
						
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Added CWE

								
							
							
						
CWE-200
Changed Reference Type
https://www.modzero.ch/advisories/MZ-17-01-Conexant-Keylogger.txt No Types Assigned
https://www.modzero.ch/advisories/MZ-17-01-Conexant-Keylogger.txt Exploit, Mitigation, Technical Description, Third Party Advisory
Changed Reference Type
https://www.modzero.ch/modlog/archives/2017/05/11/en_keylogger_in_hewlett-packard_audio_driver/index.html No Types Assigned
https://www.modzero.ch/modlog/archives/2017/05/11/en_keylogger_in_hewlett-packard_audio_driver/index.html Exploit, Technical Description, Third Party Advisory