Red Hat released Important-rated kernel and real-time kernel updates for selected Red Hat Enterprise Linux 8.4 extended-support, SAP, telecommunications, and NFV offerings. The updates, including kernel-4.18.0-305.138.1.el8_4 and kernel-rt-4.18.0-305.138.1.rt7.214.el8_4, remediate six vulnerabilities spanning netfilter/nf_tables, route management, the Ionic network driver, and NFS server processing.
Three addressed NFS server defects—CVE-2022-48827, CVE-2022-48828, and CVE-2022-48829—involve unsafe handling of client-controlled 64-bit offsets and file sizes. The fixes prevent integer underflow and invalid size handling in NFSv3/v4 attribute operations, ensure oversized NFSv3 requests return NFS3ERR_FBIG, and make reads near the maximum file offset return a short EOF-marked response rather than trigger client retry loops. Administrators should install the applicable advisory packages and reboot affected systems to activate the updated kernel.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
Red Hat issued the Important-rated RHSA-2024:5282 advisory for RHEL 8.4 real-time and telecommunications offerings on x86_64. The fixed kernel-rt build 4.18.0-305.138.1.rt7.214.el8_4 remediates the same netfilter, route-management, Ionic-driver, and NFSD vulnerabilities, including CVE-2022-48827 through CVE-2022-48829.
Red Hat issued the Important-rated RHSA-2024:5266 advisory for supported RHEL 8.4 service variants. The kernel update 4.18.0-305.138.1.el8_4 fixes CVE-2024-36005, CVE-2024-36971, CVE-2024-39502, and NFSD flaws CVE-2022-48827, CVE-2022-48828, and CVE-2022-48829; affected systems require a reboot after installation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
5 references tracked. Mallory keeps watching after this page renders.
access.redhat.com
Open sourceaccess.redhat.com
Open sourcebugzilla.redhat.com
Open sourcebugzilla.redhat.com
Open sourcebugzilla.redhat.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.