Full Report
A high-severity vulnerability in ASUS Armoury Crate software could allow threat actors to escalate their privileges to SYSTEM level on Windows machines. [...]
Analysis Summary
# Vulnerability: ASUS Armoury Crate Local Privilege Escalation
## CVE Details
- CVE ID: CVE-2025-3464
- CVSS Score: Not specified in the text, but the impact suggests a high score (likely Critical/High).
- CWE: Not specified in the text.
## Affected Systems
- Products: ASUS Armoury Crate
- Versions: 5.9.9.0 through 6.1.18.0
- Configurations: Default installation of the specified versions.
## Vulnerability Description
The vulnerability, identified as CVE-2025-3464, resides within the ASUS Armoury Crate software. Successful exploitation allows a local, unprivileged attacker to escalate their privileges to that of a Windows administrator (SYSTEM level). The underlying technical mechanism appears related to interaction with a Windows kernel driver component, a popular target for privilege escalation flaws.
## Exploitation
- Status: PoC available (Cisco Talos validated exploit code). No exploitation in the wild observed so far.
- Complexity: Required local access. Complexity implied to be achievable, given PoC availability.
- Attack Vector: Local
## Impact
- Confidentiality: High (Administrator access allows full system file access)
- Integrity: High (Administrator access allows modification of all system files and settings)
- Availability: High (Administrator access allows system configuration changes leading to denial of service)
## Remediation
### Patches
- The vendor strongly recommends updating Armoury Crate to the latest available version. (Specific fixed version number is not listed, but any version later than 6.1.18.0 should be safe).
### Workarounds
- Update Armoury Crate via the application's internal "Update Center" (Settings -> Update Center -> Check for Updates -> Update).
## Detection
- Detection methods specific to this vulnerability are not detailed in the source.
- Indicators of compromise would involve observing unauthorized privilege escalation attempts or system configuration changes originating from a non-administrator context linked to the Armoury Crate process/driver interaction.
## References
- Vendor Advisory: hxxps://www.asus.com/content/asus-product-security-advisory/
- Third-Party Analysis/Reporting: hxxps://www.bleepingcomputer.com/news/security/asus-armoury-crate-bug-lets-attackers-get-windows-admin-privileges/