CVE-2026-64951
Severity CVSS v4.0:
Pending analysis
Type:
CWE-369
Divide By Zero
Publication date:
12/08/2026
Last modified:
12/08/2026
Description
A rogue Velociraptor client can upload a malformed sparse file such that if the GUI attempts to expand the file, a panic occurs which may crash the server process.<br />
<br />
The problem is a Divide by Zero bug in the ShouldPadFile() function.
Impact
Base Score 3.x
3.50
Severity 3.x
LOW



