AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-8917

HIGH · CVSS 8.4 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate are vulnerable to an IOCTL flaw that allows local attackers to write arbitrary values to memory addresses, which could lead to privilege escalation. This high-severity vulnerability poses significant risks to systems running these applications, particularly in environments where users have local access. Organizations using these tools should prioritize remediation to mitigate potential exploitation.

CVE
CVE-2026-8917
Severity
HIGH
CVSS
8.4
EPSS
0.11%

Original NVD Description

Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the '  Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate Security Bulletin   ' section on the ASUS Security Advisory for more information.