OSV 1.4.0 · github-reviewed · 修改于 2026-05-12 00:24
发布时间
2026-05-06 11:33
GitHub 审查时间
2026-05-12 00:24
NVD 发布时间
2026-05-06 11:15
源文件
advisories/github-reviewed/2026/05/GHSA-6cmp-qv2f-x97x/GHSA-6cmp-qv2f-x97x.json
An off-by-one error (CWE-193) in the ConsumeUnit16Array and ConsumeUnit64Array functions in Velocidex Velociraptor before version 0.76.5 on Windows and Linux allows a local attacker to cause a Denial of Service (DoS) via a process crash by providing a specially crafted .evtx file to the parse_evtx VQL plugin.