Asus Released Firmware Patches for Critical Bugs

The company issued updates to address security vulnerabilities in multiple router models and motherboards.

Updated on Oct. 3, 2026 in Cybersecurity

Bold flat-color editorial illustration of a geometric motherboard and router casing, symbolizing technical security and hardware firmware updates.
Asus has issued critical firmware updates for thirteen motherboard models and multiple router lines to prevent potential unauthorized system access. AI Illustration. Upload story photo >

Live Poll

Do you feel confident in your ability to keep your home's connected devices secure?

Asus has released firmware updates to patch critical vulnerabilities in several router models and a BIOS update for 13 motherboard models. These bugs could potentially allow attackers to execute arbitrary commands or manipulate system memory.

Why it matters

Updating hardware is essential for securing home and office networks against exploits that could grant attackers unauthorized root access. These patches address security flaws that could otherwise lead to system compromise or arbitrary command execution.

The router vulnerabilities, assigned CVE-2026-14157 and CVE-2026-13313, carry high CVSS scores of 9.4 and 8.9 respectively. Asus also released BIOS version 1502 for the WS Z390 Pro and 2203 for 12 other motherboard models.

The players

Asus

Asus is a multinational hardware and electronics company known for producing computers, monitors, graphics cards, and networking equipment.

VulnCheck

VulnCheck is a cybersecurity firm that tracks and discloses vulnerabilities to help organizations secure their infrastructure.

The details

Attackers can exploit a flaw in VPN configuration file processing to run commands, while a separate bug leverages debug code to enable Telnet with root privileges. Additionally, a motherboard-specific memory vulnerability allows physical attackers to read or write arbitrary system memory.

Timeline

  1. 2024: VulnCheck disclosed a previous router bug, CVE-2024-0401.

  2. October 3, 2026: The current firmware and BIOS updates were published.

The Tech Race

This security push follows the pattern set by the AyySSHush router backdoor campaign in highlighting the ongoing risks of leaving legacy debug code in modern networking hardware. It reflects a wider industry struggle to secure devices against exploits that bypass standard administrative security.

Users should immediately update their router firmware and motherboard BIOS to protect against unauthorized command execution. It is also recommended to set a minimum admin password length of 10 characters to bolster device security.

The takeaway

Maintaining up-to-date firmware is the most effective defense against sophisticated hardware-based exploits. Regularly checking manufacturer support pages for patches ensures that older devices do not become entry points for malicious actors.

Further reading

For more information on securing your network devices, visit the Cybersecurity section.

Source note: This article includes information reported by Tom's Hardware.

Live Poll

Do you feel confident in your ability to keep your home's connected devices secure?