PT-2026-44111 · Pam Usb · Pam Usb

·

CVE-2026-44711

·

Published

2026-05-13

·

Updated

2026-05-28

CVSS v3.1

7.9

High

VectorAV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions pam usb versions prior to 0.8.7
Description pam usb provides hardware authentication for Linux using ordinary removable media. Symlink attacks on the pad directory and pad files allow for authentication bypass and corruption of root files.
Recommendations Update to version 0.8.7.

Exploit

Fix

Link Following

Improper Authentication

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-44711
GHSA-FJPM-P9PJ-MP34
GHSA-QQQ4-5773-PMW5

Affected Products

Pam Usb