Privilege Escalation in SpeedFan on Microsoft Windows Vista x64
CVE-2007-5633

Currently unrated

Key Information:

Vendor

Almico

Status
Vendor
CVE Published:
23 October 2007

What is CVE-2007-5633?

A vulnerability exists in SpeedFan 4.33 for Microsoft Windows Vista x64, where local users can exploit the IOCTL_RDMSR and IOCTL_WRMSR commands to read or write arbitrary Model-Specific Registers (MSRs). This allows attackers to gain elevated privileges and even load unsigned drivers, potentially leading to greater system compromise. Effective security measures should be employed to prevent unauthorized access to these functionalities.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.