ASUS has just issued an urgent notice requesting users to update Armoury Crate – the central management software on ASUS devices – to patch the extremely critical CVE-2025-3464 vulnerability. Failure to update could allow hackers to take full control of the entire Windows system.
Details of the CVE-2025-3464 vulnerability
This vulnerability affects Armoury Crate versions from V5.9.9.0 to V6.1.18.0, located within the AsIO3.sys driver. It is a “race condition” error combined with an authentication bypass, allowing an attacker to escalate privileges to SYSTEM level – the highest level on Windows. By utilizing hard link techniques and SHA-256 + PID authentication, hackers can bypass protection mechanisms and execute malicious code directly on the device.
https://www.youtube.com/watch?v=dJSCKpCZzME
Asus has quickly released a patch and recommends that users update Armoury Crate immediately to avoid exploitation, especially on computers running with insecure administrative privileges or improper permission settings.
Security improvements and new features in the Armoury Crate update
In addition to fixing the CVE-2025-3464 vulnerability, the new Armoury Crate update also:
- Improves new device detection capabilities
- Fixes incorrect product image displays
- Resolves installation errors for user accounts without admin rights
- Enhances service connection and update performance
- Adds a new AI Overclocking option for motherboards
- Improves the UI experience in Aura Creator and light/dark modes
- Strengthens service connections and fixes login errors related to WebView2
Additionally, prominent features continue to be supported, such as Aura Sync, Aura Creator, Scenario Profiles, Game Library, Game Deals, and the ROG Elite Rewards loyalty system.
However, users should note that Armoury Crate is only compatible with ASUS, ROG, and TUF hardware and does not support brands like MSI or Gigabyte. If you are using hardware from other manufacturers, you should switch to alternative tools such as MSI Center, Gigabyte Control Center, Signal RGB, or FanControl.
Users can download it here: Download
In summary: If you are using ASUS devices, update Armoury Crate immediately to avoid serious security risks. This is not just a patch for a dangerous vulnerability, but also brings many important improvements to performance and security.

