CVE-2025-11901
Awaiting Analysis Awaiting Analysis - Queue
BaseFortify

Publication date: 2025-12-17

Last updated on: 2025-12-18

Assigner: ASUS

Description
An uncontrolled resource consumption vulnerability affects certain ASUS motherboards using Intel B460, B560, B660, B760, H410, H510, H610, H470, Z590, Z690, Z790, W480, W680 series chipsets. Exploitation requires physical access to internal expansion slots to install a specially crafted device and supporting software utility, and may lead to uncontrolled resource consumption that increases the risk of unauthorized direct memory access (DMA). Refer to the 'Security Update for UEFI firmware' section on the ASUS Security Advisory for more information.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-12-17
Last Modified
2025-12-18
Generated
2026-05-07
AI Q&A
2025-12-17
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-284 The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is an uncontrolled resource consumption issue affecting certain ASUS motherboards with specific Intel chipsets. It requires physical access to internal expansion slots to install a specially crafted device and software, which can lead to excessive resource use and increase the risk of unauthorized direct memory access (DMA).


How can this vulnerability impact me? :

The vulnerability can lead to uncontrolled resource consumption on affected ASUS motherboards, potentially allowing unauthorized direct memory access (DMA). This could compromise system stability, security, and data integrity if exploited.


What immediate steps should I take to mitigate this vulnerability?

To mitigate this vulnerability, ensure that physical access to internal expansion slots is restricted to trusted personnel only. Additionally, apply the 'Security Update for UEFI firmware' provided by ASUS as referenced in their security advisory for affected motherboards.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart