Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (4)
📋 Description
CVE-2022-49328 — kernel: mt76: fix use-after-free by removing a non-RCU wcid pointer CVE-2022-49395 — kernel: um: Fix out-of-bounds read in LDT setup CVE-2022-49846 — kernel: udf: Fix a slab-out-of-bounds write bug in udf_find_entry() CVE-2022-50066 — kernel: net: atlantic: fix aq_vec index out of range error
🎯 Affected products52
- Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- bpftool-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- bpftool-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- bpftool-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- bpftool-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-0:4.18.0-305.162.1.el8_4.src as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-0:4.18.0-305.162.1.el8_4.src as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-abi-stablelists-0:4.18.0-305.162.1.el8_4.noarch as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-abi-stablelists-0:4.18.0-305.162.1.el8_4.noarch as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-core-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-core-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-core-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-core-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-devel-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-devel-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-modules-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-modules-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debug-modules-extra-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debug-modules-extra-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debuginfo-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- kernel-debuginfo-common-x86_64-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
- kernel-debuginfo-common-x86_64-0:4.18.0-305.162.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
- +22 more not shown
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Workaround: To mitigate this issue, prevent module udf from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically. Workaround: To mitigate this issue, prevent module atlantic from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2025:10828
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2347899
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2348217
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2363432
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373683
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_10828.json