logo

ASUS releases fix for AMI bug that lets hackers brick servers

ID: 9111cc97-fd33-50fc-a8c2-9b4229cfc740

STIX ID: report--9111cc97-fd33-50fc-a8c2-9b4229cfc740

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2025-04-23

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

ASUS released firmware updates to address CVE-2024-54085, a maximum-severity, remotely exploitable flaw in AMI MegaRAC BMC affecting multiple server vendors; exploitation can allow remote takeover, firmware tampering, malware/ransomware deployment, or physical damage (over-volting/bricking). Administrators are advised to apply the provided BMC .ima firmware updates via the web interface (use the Full Flash option) immediately and follow ASUS guidance for safe firmware updates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.