CVE-2023-38427 | Linux Kernel up to 6.3.7 ksmbd fs/smb/server/smb2pdu.c deassemble_neg_contexts out-of-bounds (EUVD-2023-42244 / Nessus ID 249907)
A vulnerability was found in Linux Kernel up to 6.3.7. It has been classified as problematic. Affected by this issue is the function deassemble_neg_contexts of the file fs/smb/server/smb2pdu.c of the component ksmbd. The manipulation leads to out-of-bounds read.
This vulnerability is listed as CVE-2023-38427. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is recommended.