Almico maintains SpeedFan, a hardware monitoring and fan-control utility for personal computers, which has surfaced vulnerabilities centered on memory-buffer handling. The observed weakness classes reflect the low-level system access required for thermal management and hardware interaction. Current CVE counts, severity distribution, exploitation status, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Almico over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-5633HIGH Speedfan.sys in Alfredo Milani Comparetti SpeedFan 4.33, when used on Microsoft Windows Vista x64, allows local users to read or write arbitrary MSRs, and gain privileges and load | Oct 23, 2007 | 7.2 | 29 | NO | YES |
CVE-2020-28175HIGH There is a local privilege escalation vulnerability in Alfredo Milani Comparetti SpeedFan 4.52. Attackers can use constructed programs to increase user privileges | Dec 3, 2020 | 7.8 | 20 | NO | NO |
CVE-2007-5634MEDIUM Speedfan.sys in Alfredo Milani Comparetti SpeedFan 4.33, when used on Microsoft Windows Vista x64, does not properly check a buffer during an IOCTL 0x9c402420 call, which allows lo | Oct 23, 2007 | 4.9 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Almico.
Media articles that mention a CVE ID that affects a product developed by Almico — matched by CVE ID, not by vendor name.