ASUS Security Update: Patch Armoury Crate and GPU Tweak III
ASUS says a high-severity local privilege-escalation flaw affects older GPU Tweak, AI Suite 3 and Armoury Crate component versions.
ASUS has issued a security update for GPU Tweak III, GPU Tweak II, AI Suite 3 and a component used by Armoury Crate. The company identifies the issue as CVE-2026-8917 and assigns it a CVSS 4.0 score of 8.4 (High).
According to ASUS, exploitation could allow a local user to escalate privileges on the system. This is not described as a remote, no-interaction attack; the published CVSS vector lists local access and high privileges as prerequisites. Still, people using the affected software should update promptly.
Which versions are affected?
- GPU Tweak III v2.1.1.7 and earlier
- GPU Tweak II v2.4.0.0 and earlier
- AI Suite 3 v2.1.2.0 and earlier
- VGA.dll, a component used by Armoury Crate, v0.0.7.8 and earlier
What ASUS says to do
For GPU Tweak III, GPU Tweak II and AI Suite 3, ASUS directs users to download and install the applicable latest release from its support site. For Armoury Crate, ASUS says to open the app and use Check for Updates in Update Center.
If you have an ASUS gaming PC, graphics card utility or motherboard-management software installed, check the product’s installed version before assuming you are covered. The company’s bulletin names a component used by Armoury Crate, so users who do not actively launch the app should not overlook it.
Practical next step
Install the current updates from ASUS, restart if prompted, and keep software-management tools updated. Do not rely on this article as a substitute for the official release notes or device-specific support guidance.
Source: ASUS Product Security Advisory, “Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3, and Armoury Crate”; CVE-2026-8917.
Source: OC3D
