A vulnerability was found in Almico Speedfan 4.52. It has been declared as problematic. This affects the function KiSystemCall64 in the library speedfan.sys of the component MSR Index Handler. Executing a manipulation can lead to memory leak.

The identification of this vulnerability is CVE-2026-19382. The attack can only be executed locally. Furthermore, there is an exploit available.

The vendor was contacted early about this disclosure but did not respond in any way.