CVE-2026-8917
8.4
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Summary
Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the ' Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate Security Bulletin ' section on the ASUS Security Advisory for more information.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ASUS | GPU Tweak III | 0 <= V2.1.1.7 | affected |
| ASUS | GPUTweakII | 0 <= V2.4.0.0 | affected |
| ASUS | AI Suite3 | 0 <= V2.1.2.0 | affected |
| ASUS | VGAdll | 0 <= V0.0.7.8 | affected |
Weaknesses
- CWE-822: CWE-822: Untrusted Pointer Dereference
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.