PT-2024-25158 · Asus · Asus Bios Flash Driver

Driverhunter

·

Published

2024-05-22

·

Updated

2024-08-01

·

CVE-2024-33221

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ASUS BIOS Flash Driver version 3.2.12.0
Description An issue in the component AsusBSItf.sys allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.
Recommendations For version 3.2.12.0, consider disabling the AsusBSItf.sys component until a patch is available to prevent exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2024-33221

Affected Products

Asus Bios Flash Driver