The ALPS ALPINE touchpad driver before 8.2206.1717.634, as used on various Dell, HP, and Lenovo laptops, allows attackers to conduct Path Disclosure attacks via a “fake” DLL file.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15596
Reference (s):
- https://seclists.org/fulldisclosure/2020/Jul/30
- https://support.hp.com/document/c06706305