CVE-2026-8917: ASUS Ai SUITE3

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the '  Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate Security Bulletin   ' section on the ASUS Security Advisory for more information.

Affected products

  • ASUS Ai SUITE3: up to and including V2.1.2.0
  • ASUS GPU Tweak Iii: up to and including V2.1.1.7
  • ASUS Gputweakii: up to and including V2.4.0.0
  • ASUS Vgadll: up to and including V0.0.7.8

Published 2026-08-11. Last modified 2026-09-17.