Security Advisory

CVE-2025-9338

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-06 06:02:48
Last updated 2025-11-06 15:37:38
Assigner ASUS
State PUBLISHED

Description

A improper restriction of operations within the bounds of a memory buffer exists in AsIO3.sys driver. This vulnerability can be triggered by manually executing a specially crafted process, potentially leading to local privilage escalation. For additional information, please refer to the Security Update for Armoury Crate App section of the ASUS Security Advisory.