In its advisory, HP called the keylogger as a potential, local loss of confidentiality.
A party would need administrative privileges so that take advantage of the vulnerability.
Neither Synaptics nor HP has access to customer data as a result of this issue.
The company has released a Driver update to remove debugging code for all the affected HP Notebook models.
Clickhereto see the entire list of affected HP laptops and their patches.
ZwClose also published atechnical analysisof the SynTP.sys file and the keylogger code for security researchers and software developers.
Source:The Hacker News
Read More
source: www.techworm.net