


Perceptive Security
SOC/SIEM Consultancy

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, symlink attacks on pad directory and pad files enable authent…
Published:
26 May 2026 at 22:00:00
Alert date:
27 May 2026 at 22:02:45
Source:
nvd.nist.gov
Operating Systems, Identity & Access
pam_usb, which provides hardware authentication for Linux using removable media, contains a vulnerability prior to version 0.8.7. The flaw involves symlink attacks on pad directory and pad files that can lead to authentication bypass and root file corruption. This represents a significant security risk as it can compromise the authentication mechanism and potentially allow unauthorized access with elevated privileges. The vulnerability has been addressed in version 0.8.7.
Technical details
Mitigation steps:
Affected products:
pam_usb
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-44711
https://github.com/mcdope/pam_usb/security/advisories/GHSA-fjpm-p9pj-mp34
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
