CVE-2025-11901
Published: Dec 17, 2025
Modified: Dec 17, 2025
Description
An uncontrolled resource consumption vulnerability affects certain ASUS motherboards using Intel B460, B560, B660, B760, H410, H510, H610, H470, Z590, Z690, Z790, W480, W680 series chipsets. Exploitation requires physical access to internal expansion slots to install a specially crafted device and supporting software utility, and may lead to uncontrolled resource consumption that increases the risk of unauthorized direct memory access (DMA). Refer to the 'Security Update for UEFI firmware' section on the ASUS Security Advisory for more information.
| Vendor | Product | Versions |
|---|---|---|
ASUS | B460 series | affected before 1805, 2002, 3002 |
ASUS | B560 series | affected before 2402, 2803 |
ASUS | B660 series | affected before 3810, 4501 |
ASUS | B760 series | affected before 1825, 3102 |
ASUS | H410 series | affected before 1805, 2002 |
ASUS | H470 series | affected before 3002 |
ASUS | H510 series | affected before 2402, 2803 |
ASUS | H610 series | affected before 3810 |
ASUS | W480 series | affected before 1002, 2603, 3302 |
ASUS | W680 series | affected before 2015, 2701, 4501 |
ASUS | Z590 series | affected before 2402, 2803 |
ASUS | Z690 series | affected before 3810, 4501 |
ASUS | Z790 series | affected before 1825, 2102, 3102 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now