Double Free Vulnerability in ASUS System Analysis Service
CVE-2025-2027
5.9MEDIUM
Key Information:
What is CVE-2025-2027?
A double free vulnerability has been discovered in the ASUS System Analysis service, enabling attackers to exploit specially crafted local RPC requests. This could lead to service crashes and, in rare cases, memory manipulation, posing significant risks to system stability and security. For comprehensive mitigation details, refer to the ASUS Security Advisory.
Affected Version(s)
ASCI before 1.1.32.0
ASCI before 3.1.43.0
ASCI before 3.2.44.0