CVE-2026-7572

An off-by-one error (CWE-193) in the ConsumeUnit16Array and ConsumeUnit64Array functions in Velocidex Velociraptor before version 0.76.5 on Windows and Linux allows a local attacker to cause a Denial of Service (DoS) via a process crash by providing a specially crafted .evtx file to the parse_evtx VQL plugin.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:rapid7:velociraptor:*:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

01 Jun 2026, 16:59

Type Values Removed Values Added
First Time Linux
Microsoft
Linux linux Kernel
Microsoft windows
Rapid7
Rapid7 velociraptor
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:rapid7:velociraptor:*:*:*:*:*:*:*:*
References () https://docs.velociraptor.app/announcements/advisories/cve-2026-7572/ - () https://docs.velociraptor.app/announcements/advisories/cve-2026-7572/ - Vendor Advisory

06 May 2026, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-06 03:15

Updated : 2026-06-01 16:59


NVD link : CVE-2026-7572

Mitre link : CVE-2026-7572

CVE.ORG link : CVE-2026-7572


JSON object : View

Products Affected

rapid7

  • velociraptor

microsoft

  • windows

linux

  • linux_kernel
CWE
CWE-193

Off-by-one Error