A vulnerability labeled as problematic has been found in mcdope pam_usb up to 0.9.1 on Linux. Impacted is the function usb_get_process_parent_id of the component Removable Media Handler. Executing a manipulation can lead to infinite loop.

This vulnerability is handled as CVE-2026-48986. It is possible to launch the attack on the local host. There is not any exploit available.

The affected component should be upgraded.