What is CVE-2026-64816?
CVE-2026-64816 is a vulnerability in RapidRAW before version 1.6.0 where the `lutPath` field in preset files is not validated before being passed to File::open() in `lut_processing.rs`. On Windows, an attacker can specify a UNC path in `lutPath`, causing an outbound SMB connection that leaks the victim's NTLMv2 credentials to a malicious host. Users should immediately update to RapidRAW 1.6.0 or later and avoid loading untrusted preset files.
Azərbaycanca: CVE-2026-64816, RapidRAW 1.6.0-dan əvvəlki versiyalarda preset fayllarında `lutPath` sahəsinin düzgün yoxlanılmaması nəticəsində yaranan təhlükəsizlik zəifliyidir. Windows sistemlərində, xüsusi hazırlanmış fayl vasitəsilə `lutPath` dəyəri olaraq UNC yolu təqdim edildikdə, qurbanın NTLMv2 etimadnamələri hücumçu tərəfindən idarə olunan SMB serverinə sızdırılır. İstifadəçilər dərhal RapidRAW-i 1.6.0 və ya daha yuxarı versiyaya yeniləməli və ya təcili tədbir olaraq etibarsız mənbələrdən preset fayllarını qəbul etməməlidirlər.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
What software is affected by CVE-2026-64816?
This vulnerability affects RapidRAW versions prior to 1.6.0.
What immediate action should users take to protect against CVE-2026-64816?
Users should immediately update to RapidRAW 1.6.0 or later, and as a temporary measure, avoid loading preset files from untrusted sources.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.