smb_strndup_from_utf16 of the component ksmbd. The manipulation leads to out-of-bounds read.This vulnerability was named CVE-2024-26954. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.