CVE-2006-1197: High severity Macrovision SafeDisc vulnerability
SafeDisc installs the driver service for the secdrv.sys driver with insecure permissions, which allows local users to gain privileges by changing the configuration to reference a malicious program.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1197?
CVE-2006-1197 is considered to be of medium severity due to its potential for privilege escalation.
How do I fix CVE-2006-1197?
To fix CVE-2006-1197, ensure that the secdrv.sys driver is configured with secure permissions or consider uninstalling SafeDisc if it is not needed.
Who is affected by CVE-2006-1197?
CVE-2006-1197 affects systems using SafeDisc software, specifically versions that install the secdrv.sys driver.
What might attackers gain from exploiting CVE-2006-1197?
By exploiting CVE-2006-1197, attackers could gain elevated privileges and potentially execute arbitrary code on the affected system.
How does CVE-2006-1197 impact local users?
CVE-2006-1197 allows local users to gain increased privileges by manipulating the insecure permissions associated with the secdrv.sys driver.