Sensitive Information Exposure in Armoury Crate Driver by ASUS
CVE-2026-16006

5.7MEDIUM

Key Information:

Vendor

Asus

Vendor
CVE Published:
8 September 2026

What is CVE-2026-16006?

The Armoury Crate driver by ASUS is susceptible to a vulnerability that allows local users to evade verification processes through crafted IOCTL requests. This flaw can expose kernel virtual addresses, leading to unauthorized access to sensitive system information. Users may gain insights into the kernel memory layout, creating potential risks for the system's security. For details on protective updates, refer to ASUS's official security advisory.

Affected Version(s)

Armoury Crate 0 <= 6.5.7

References

CVSS V4

Score:
5.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

vladimirelitokarev@gmail.com
beta_b0t@yahoo.com
geraldlim619@gmail.com
.