CVE-2026-8917: High severity ASUS GPU Tweak III vulnerability
Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the ' Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate Security Bulletin ' section on the ASUS Security Advisory for more information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8917?
CVE-2026-8917 has a risk score of 50, indicating a moderate severity level.
How do I fix CVE-2026-8917?
To fix CVE-2026-8917, update to the latest versions of ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, or VGAdll as recommended by ASUS.
What impact does CVE-2026-8917 have on my system?
CVE-2026-8917 allows a local attacker to potentially escalate privileges by writing to arbitrary memory addresses.
Who is affected by CVE-2026-8917?
Users running ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, or VGAdll are affected by CVE-2026-8917.
Is CVE-2026-8917 actively exploited?
As of now, there is no public information indicating that CVE-2026-8917 is being actively exploited.