CVE-2026-77797

Summary

Velociraptor's prefetch library contains an out of bound vulnerability which may cause a crash when parsing certain malformed prefetch files.

Affected Software

VendorProductVersion RangeStatus
Rapid7Velociraptor0 < 0.77.3affected

Weaknesses

  • CWE-20: CWE-20 Improper input validation
  • CWE-125: CWE-125 Out-of-bounds read

Workarounds

This issue can result in a client crash. Usually clients will restart after a crash and resume normal operations. Users can collect the raw prefetch files without parsing them on the client for further analysis on the server.

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References