Race Condition Vulnerability in ASUS Armoury Crate Software
CVE-2026-16727

7.3HIGH

Key Information:

Vendor

Asus

Vendor
CVE Published:
30 July 2026

What is CVE-2026-16727?

The vulnerability in ASUS Armoury Crate arises from a race condition that allows local users to execute arbitrary code with elevated privileges. This issue is triggered when multiple processes attempt to access shared resources without proper synchronization, leading to potential security breaches. A crafted file replacement can exploit this flaw, enabling unauthorized actions within the system. For further details, refer to the Security Update for ASUS Armoury Crate on ASUS's official security advisory page.

Affected Version(s)

Armoury Crate V5.4.1

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.