CVE-2026-13585

Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system. Refer to the '  Security Update for ASUS System Control Interface  ' section on the ASUS Security Advisory for more information.
CVSS

No CVSS.

Configurations

No configuration.

History

21 Jul 2026, 09:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2026/Jul/26 -

15 Jul 2026, 02:18

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-15 02:18

Updated : 2026-07-21 09:16


NVD link : CVE-2026-13585

Mitre link : CVE-2026-13585

CVE.ORG link : CVE-2026-13585


JSON object : View

Products Affected

No product.

CWE
CWE-226

Sensitive Information in Resource Not Removed Before Reuse

CWE-770

Allocation of Resources Without Limits or Throttling