Please be advised that SA-2022-007 has been published.
Summary:
The vulnerability is a heap overflow in the caller of the TLS packet reassembly code. Due to improper error handling, situations exist where this can lead to a heap overflow condition and potential remote code execution (RCE).
Please see the full Security Advisory announcement for more details: Security Advisory - SA-2022-007 - TLS Heap Overflow (CVE-2022-29860)