A buffer overflow vulnerability has been disclosed that could allow for local privilege escalation to root and leakage of stack and heap addresses. The CVSS score is 7.8 HIGH. A patch has been proposed and mitigation is available by disabling unprivileged user namespaces.
This is another buffer overflow in nf_tables similar to the one we we mentioned for CVE-2022-34981.
Full writeup and PoC from seclists here!