PT-2026-37338 · Velocidex · Velociraptor

Javier Perez

·

Published

2026-05-06

·

Updated

2026-05-06

·

CVE-2026-7572

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Velocidex Velociraptor versions prior to 0.76.5
Description An off-by-one error in the ConsumeUnit16Array() and ConsumeUnit64Array() functions allows a local attacker to cause a Denial of Service (DoS) via a process crash. This occurs when a specially crafted .evtx file is provided to the 'parse evtx' VQL plugin. An off-by-one error is a situation where a program iterates one time too many or too few, often leading to memory access violations.
Recommendations Update to version 0.76.5 or later.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2026-7572

Affected Products

Velociraptor