A whitepaper detailing this CVE-2022-32296 attack.
Vulnerability is in Double-Hash Port Selection (DHPS, IETF RFC 6056)
Fixed in Linux 5.17.9 and above using a variant of DHPS.
Linux sysctl:
net.ipv4.conf.all.rp_filter = 1
net.ipv4.conf.default.rp_filter = 1
Also Firefox Only HTTPS must be enabled to prevent JavaScript from performing dwell on hidden unsecure HTTP DOM frame.
----
https://support.mozilla.org/mk/questions/1359401
https://arxiv.org/pdf/2209.12993