CVE-2017-8360: Conexant MICTRAY64
Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.
Conexant Systems mictray64 task, as used on HP Elite, EliteBook, ProBook, and ZBook systems, leaks sensitive data (keystrokes) to any process. In mictray64.exe (mic tray icon) 1.0.0.46, a LowLevelKeyboardProc Windows hook is used to capture keystrokes. This data is leaked via unintended channels: debug messages accessible to any process that is running in the current user session, and filesystem access to C:\Users\Public\MicTray.log by any process.
Affected products
- Conexant MICTRAY64: up to and including 1.0.0.46
Published 2017-05-12. Last modified 2026-06-17.