A vulnerability classified as very critical was found in Linux Kernel up to 6.18.33/7.0.10. Impacted is the function iwl_mld_tx_tso_segment of the component MLD driver. Such manipulation of the argument max_tid_amsdu_len leads to use after free.

This vulnerability is listed as CVE-2026-64037. The attack may be performed from remote. There is no available exploit.