A vulnerability classified as very critical was found in Linux Kernel up to 6.18.37/7.1.2. Affected by this vulnerability is an unknown functionality of the component iwlwifi. The manipulation of the argument sta_mask results in out-of-bounds read.

This vulnerability was named CVE-2026-64255. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is advised.