In the Linux kernel, the following vulnerability has been resolved:
ksmbd: smbdirect: verify remaining_data_length respects max_fragmented_recv_size
This is inspired by the check for data_offset + data_length.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-68139.json"