CVE-2023-38427: kernel: ksmbd: integer underflow and out-of-bounds read in deassemble_neg_contexts

Severity: Critical

CVSS Score: 9.8

An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and out-of-bounds read in deassemble_neg_contexts.