CVE-2024-49996 | Linux Kernel up to 6.6.54/6.10.13/6.11.2 cifs_strndup_from_utf16 buffer overflow (Nessus ID 210940 / WID-SEC-2024-3251)
A vulnerability was found in Linux Kernel up to 6.6.54/6.10.13/6.11.2. It has been declared as critical. This affects the function cifs_strndup_from_utf16. Such manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2024-49996. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.