CVE-2026-93495

Summary

Improper initialization in an ASUS certain motherboard allows an physically proximate user to read or write arbitrary memory by inserting a specially crafted device.

Affected Software

VendorProductVersion RangeStatus
ASUSMotherboard(PRIME Z390-A )through 2101affected
ASUSMotherboard(PRIME Z390-A/H10 )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI HERO )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI HERO (WI-FI) )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI FORMULA )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI CODE )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI EXTREME )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI APEX )through 2101affected
ASUSMotherboard(ROG MAXIMUS XI GENE )through 2101affected
ASUSMotherboard(ROG STRIX Z390-E GAMING )through 2101affected
ASUSMotherboard(ROG STRIX Z390-F GAMING )through 2101affected
ASUSMotherboard(Pro WS C246-ACE )through 2101affected
ASUSMotherboard(WS Z390 PRO )through 1401affected

Weaknesses

  • CWE-665: CWE-665:Improper Initialization

References