Out-of-Bounds Write Vulnerability in ASUS FA507NU and FA507NV BIOS
CVE-2026-19398
6.8MEDIUM
What is CVE-2026-19398?
The SmiFlash SMM module in the BIOS of ASUS FA507NU and FA507NV devices is vulnerable to an out-of-bounds write condition. This can be triggered by a local administrator sending a crafted software SMI request with an oversized length value. Successfully exploiting this vulnerability may lead to system crashes (BSOD) and potential BIOS corruption, significantly impacting system stability and usability. Users are advised to apply the latest security updates from ASUS to mitigate this vulnerability.
Affected Version(s)
FA507NU 318
FA507NV 318