CVE-2025-9338EPSS p2.4%
CVE-2025-9338CVE-2025-9338
Description
A improper restriction of operations within the bounds of a memory buffer exists in AsIO3.sys driver. This vulnerability can be triggered by manually executing a specially crafted process, potentially leading to local privilage escalation.
For additional information, please refer to the 'Security Update for Armoury Crate App' section of the ASUS Security Advisory.
Scoring
| EPSS | 0.13% probability of exploitation · percentile 2.4% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-07 |