SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-19398

MEDIUM · CVSS 6.8 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

An out-of-bounds write vulnerability in the SmiFlash SMM module of ASUS FA507NU and FA507NV BIOS allows local administrators to exploit crafted software SMI requests, potentially leading to system crashes or BIOS corruption. Organizations using these specific ASUS laptop models should prioritize patching this vulnerability to mitigate risks of system instability and data loss.

CVE
CVE-2026-19398
Severity
MEDIUM
CVSS
6.8
EPSS
0.11%

Original NVD Description

An out-of-bounds write in the SmiFlash SMM module of ASUS FA507NU and FA507NV BIOS allows a local  administrator to cause a system crash (BSOD) or BIOS corruption via a crafted software SMI (SW SMI) request with an oversized length value.Refer to the '  Security Update for ASUS FA507NV / FA507NU BIOS   ' section on the ASUS Security Advisory for more information.