First published: Mon Mar 13 2006(Updated: )
SafeDisc installs the driver service for the secdrv.sys driver with insecure permissions, which allows local users to gain privileges by changing the configuration to reference a malicious program.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SafeDisc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1197 is considered to be of medium severity due to its potential for privilege escalation.
To fix CVE-2006-1197, ensure that the secdrv.sys driver is configured with secure permissions or consider uninstalling SafeDisc if it is not needed.
CVE-2006-1197 affects systems using SafeDisc software, specifically versions that install the secdrv.sys driver.
By exploiting CVE-2006-1197, attackers could gain elevated privileges and potentially execute arbitrary code on the affected system.
CVE-2006-1197 allows local users to gain increased privileges by manipulating the insecure permissions associated with the secdrv.sys driver.