CVE-2026-64506
Received Received - Intake

RTL89 WiFi Driver Malformed AMPDU Frame Handling Flaw

Vulnerability report for CVE-2026-64506, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-25

Last updated on: 2026-07-25

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: correct drop logic for malformed AMPDU frames The previous commit aims to fix issue caused by malformed AMPDU frames. But the drop logic fails to deal with the first AMPDU packet paired with certain range of sequence number, and leads to unexpected packet drop. It is more likely to encounter this failure when there are busy traffic during rekey process and could lead to disconnection from the AP. Fix this by adding a initial state judgement and only reset status during pairwise rekey.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-25
Last Modified
2026-07-25
Generated
2026-07-25
AI Q&A
2026-07-25
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
linux_kernel wifi rtw89

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in the Linux kernel affects the rtw89 Wi-Fi driver. It involves incorrect handling of malformed AMPDU frames, specifically when the first packet in a sequence has a certain sequence number. This causes unexpected packet drops, especially during busy traffic or rekey processes, potentially leading to disconnection from the access point.

Impact Analysis

If you use a device with the affected Linux kernel and rtw89 Wi-Fi driver, you may experience sudden disconnections from your Wi-Fi network. This is more likely during high network traffic or when the network is rekeying its security settings, disrupting your internet connection.

Mitigation Strategies

Update the Linux kernel to a version that includes the fix for this vulnerability. Monitor network traffic for disconnections during rekey processes and apply kernel patches as soon as they become available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-64506. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart