Memory Buffer Vulnerability in AsIO3.sys Driver - ASUS
CVE-2025-9338
7.3HIGH
What is CVE-2025-9338?
An improper restriction of operations within the bounds of a memory buffer has been identified in the AsIO3.sys driver from ASUS. This vulnerability can be exploited by executing a specially crafted process manually, which may allow an attacker to escalate their privileges locally. Users are encouraged to review the security update provided by ASUS in their advisory for detailed information and mitigations.
Affected Version(s)
Armoury Crate 6.2.11 and earlier