“unsupported-when-assigned.” An out-of-bounds write in the SmiFlash SMM module of ASUS FA507NU and FA507NV BIOS allows a local  administrator to cause a system crash (BSOD) or BIOS corruption via a crafted software SMI (SW SMI) request with an oversized length value.Refer to the ' 
Security Update for ASUS FA507NV / FA507NU BIOS   ' section on the ASUS Security Advisory for more information.

Project Subscriptions

Vendors Products
Fa507nu Subscribe
Fa507nv Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

Thu, 27 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 27 Aug 2026 04:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Write in BIOS SmiFlash SMM Module Allowing Local Administrator to Trigger System Crash or BIOS Corruption on ASUS FA507NU/FA507NV

Thu, 27 Aug 2026 02:15:00 +0000

Type Values Removed Values Added
Description “unsupported-when-assigned.” An out-of-bounds write in the SmiFlash SMM module of ASUS FA507NU and FA507NV BIOS allows a local  administrator to cause a system crash (BSOD) or BIOS corruption via a crafted software SMI (SW SMI) request with an oversized length value.Refer to the '  Security Update for ASUS FA507NV / FA507NU BIOS   ' section on the ASUS Security Advisory for more information.
First Time appeared Asus
Asus fa507nu
Asus fa507nv
Weaknesses CWE-787
CPEs cpe:2.3:a:asus:fa507nu:318:*:*:*:*:*:*:*
cpe:2.3:a:asus:fa507nv:318:*:*:*:*:*:*:*
Vendors & Products Asus
Asus fa507nu
Asus fa507nv
References
Metrics cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ASUS

Published:

Updated: 2026-08-27T14:50:36.251Z

Reserved: 2026-08-10T07:25:57.688Z

Link: CVE-2026-19398

cve-icon Vulnrichment

Updated: 2026-08-27T14:50:31.032Z

cve-icon NVD

Status : Received

Published: 2026-08-27T02:16:27.460

Modified: 2026-08-27T17:17:36.177

Link: CVE-2026-19398

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-27T04:00:13Z

Weaknesses