A stack buffer overflow has been identified in the AsIO3.sys driver. This vulnerability can be triggered by input manipulation, may leading to a system crash (BSOD) or other potentially undefined execution. Refer to the 'Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.
References
History

Mon, 20 Oct 2025 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Asus
Asus armoury Crate
Vendors & Products Asus
Asus armoury Crate

Tue, 14 Oct 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 13 Oct 2025 09:45:00 +0000

Type Values Removed Values Added
Description A stack buffer overflow has been identified in the AsIO3.sys driver. This vulnerability can be triggered by input manipulation, may leading to a system crash (BSOD) or other potentially undefined execution. Refer to the 'Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.
Weaknesses CWE-121
References
Metrics cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ASUS

Published: 2025-10-13T09:24:04.749Z

Updated: 2025-10-14T14:37:01.918Z

Reserved: 2025-08-22T02:50:55.190Z

Link: CVE-2025-9336

cve-icon Vulnrichment

Updated: 2025-10-14T14:35:11.106Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-13T10:15:46.280

Modified: 2025-10-14T19:36:29.240

Link: CVE-2025-9336

cve-icon Redhat

No data.