CVE Database
/

CVE-2025-11901

Back to search

CVE-2025-11901

Published: Dec 17, 2025

Modified: Dec 17, 2025

PUBLISHED

Description

An uncontrolled resource consumption vulnerability affects certain ASUS motherboards using Intel B460, B560, B660, B760, H410, H510, H610, H470, Z590, Z690, Z790, W480, W680 series chipsets. Exploitation requires physical access to internal expansion slots to install a specially crafted device and supporting software utility, and may lead to uncontrolled resource consumption that increases the risk of unauthorized direct memory access (DMA). Refer to the 'Security Update for UEFI firmware' section on the ASUS Security Advisory for more information.

VendorProductVersions

ASUS

B460 series

affected
before 1805, 2002, 3002

ASUS

B560 series

affected
before 2402, 2803

ASUS

B660 series

affected
before 3810, 4501

ASUS

B760 series

affected
before 1825, 3102

ASUS

H410 series

affected
before 1805, 2002

ASUS

H470 series

affected
before 3002

ASUS

H510 series

affected
before 2402, 2803

ASUS

H610 series

affected
before 3810

ASUS

W480 series

affected
before 1002, 2603, 3302

ASUS

W680 series

affected
before 2015, 2701, 4501

ASUS

Z590 series

affected
before 2402, 2803

ASUS

Z690 series

affected
before 3810, 4501

ASUS

Z790 series

affected
before 1825, 2102, 3102

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now