Buffer Overflow in SpeedFan on Microsoft Windows Vista x64
CVE-2007-5634

Currently unrated

Key Information:

Vendor

Almico

Status
Vendor
CVE Published:
23 October 2007

What is CVE-2007-5634?

A buffer overflow vulnerability exists in SpeedFan 4.33, specifically in the 'speedfan.sys' driver when used on Microsoft Windows Vista x64. This flaw occurs during an IOCTL 0x9c402420 call, which fails to properly validate the input buffer size. As a result, local users may initiate a denial of service through a machine crash and potentially exploit other unspecified vectors to gain higher privileges.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.