CVE-2026-75811: Medium severity ASUS Armoury Crate App vulnerability
Improper Restriction of Software Interfaces to Hardware Features in ASUS Armoury Crate allows a local user to modify hardware configuration settings and potentially cause hardware damage by bypassing driver authentication and accessing critical model-specific registers.Refer to the ' Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need?
An attacker needs local access to the system. The issue is described as allowing a local user to bypass driver authentication and access critical model-specific registers.
What is the potential impact of successful exploitation?
A local user may be able to modify hardware configuration settings. This could potentially cause hardware damage.
Where can I find vendor remediation information?
ASUS directs users to the “Security Update for Armoury Crate App” section of its ASUS Security Advisory for additional information.