Stack Buffer Overflow in AsIO3.sys Driver by ASUS
CVE-2025-9336

6.8MEDIUM

Key Information:

Vendor

Asus

Vendor
CVE Published:
13 October 2025

What is CVE-2025-9336?

A stack buffer overflow vulnerability has been found in the AsIO3.sys driver, a component associated with the Armoury Crate application by ASUS. This issue can be exploited through crafted input that manipulates the stack, potentially resulting in a system crash (BSOD) or triggering undefined behaviors. Users are advised to apply updates from ASUS to mitigate any risks associated with this vulnerability. More information can be found in the ASUS security advisory.

Affected Version(s)

Armoury Crate Before v6.3.4

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

neseesun
.
CVE-2025-9336 : Stack Buffer Overflow in AsIO3.sys Driver by ASUS