Red Hat released Important-rated kernel security updates for supported Red Hat Enterprise Linux 8.4 and 8.8 extended-support offerings, remediating memory-safety flaws including CVE-2022-50066 in the Aquantia Atlantic network driver and CVE-2022-49846 in the UDF filesystem. CVE-2022-50066 could access the aq_vec array out of bounds during Atlantic driver suspend handling because of unsafe loop logic; UBSAN observed access to index 8 in an eight-element array. CVE-2022-49846 is a slab out-of-bounds write in the UDF filesystem's udf_find_entry() function.
RHSA-2025:10828 supplies kernel 4.18.0-305.162.1.el8_4 for RHEL 8.4 Advanced Update Support and Extended Life Cycle Long Life systems, also fixing CVE-2022-49395 in UML LDT setup and CVE-2022-49328 in the mt76 wireless driver. RHSA-2025:10834 supplies kernel 4.18.0-477.101.1.el8_8 for RHEL 8.8 Extended Life Cycle Long Life, Telecommunications Update Service, and SAP update-service deployments on x86_64 and ppc64le. Red Hat requires affected systems to reboot after installation for the corrected kernels to take effect.

See real exploitation activity before you spend the cycle.
3 events from the most recent confirmed update back to the earliest known activity.
Red Hat issued Important-rated advisory RHSA-2025:10834 for supported RHEL 8.8 offerings, including Extended Life Cycle Long Life, Telecommunications Update Service, and SAP Solutions. Kernel build 4.18.0-477.101.1.el8_8 fixes the UDF filesystem flaw CVE-2022-49846 and Atlantic driver flaw CVE-2022-50066; rebooting is required for the fixes to take effect.
Red Hat issued Important-rated advisory RHSA-2025:10828 for RHEL 8.4 AUS and Extended Life Cycle Long Life systems. Kernel build 4.18.0-305.162.1.el8_4 remediates CVE-2022-49395, CVE-2022-49328, CVE-2022-49846, and CVE-2022-50066; affected systems require a reboot after installation.
Red Hat issued Important-rated advisory RHSA-2025:10761 for RHEL 8.2 Advanced Update Support on x86_64. Kernel build 4.18.0-193.159.1.el8_2 remediates CVE-2022-49846 in the UDF filesystem and CVE-2022-50066 in the Atlantic driver; affected systems must be rebooted after installation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
5 references tracked. Mallory keeps watching after this page renders.
access.redhat.com
Open sourceaccess.redhat.com
Open sourceaccess.redhat.com
Open sourceaccess.redhat.com
Open sourcebugzilla.redhat.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.