[CLSA-2026:1777977059] dovecot: Fix of CVE-2026-27857
Type:
security
Severity:
Important
Release date:
2026-05-05 10:31:06 UTC
Description:
- CVE-2026-27857: limit the number of open IMAP parser lists in imap-login to prevent excessive memory usage from deeply nested parentheses (e.g. NOOP (((...))))
Updated packages:
  • dovecot-2.3.16-5.el8.tuxcare.els1.i686.rpm
    sha:2be0e7c26b5b9bb8d9f59ab69c64b3f3a1f734d4987132ef4f2ee3ea0328deb4
  • dovecot-2.3.16-5.el8.tuxcare.els1.x86_64.rpm
    sha:d41da356b34fdb841f8e5813ce0b39586291d4602928ac508826aeffc1bda54c
  • dovecot-devel-2.3.16-5.el8.tuxcare.els1.i686.rpm
    sha:f4ea984cabe0c36add39da601935c596d9c5ef4975af91c0c056530ebd468092
  • dovecot-devel-2.3.16-5.el8.tuxcare.els1.x86_64.rpm
    sha:0f8ef20c355a39f7c520a43e8e67590eda40b8897b3b10d9b677f6fc876026f4
  • dovecot-mysql-2.3.16-5.el8.tuxcare.els1.x86_64.rpm
    sha:f3b9f726106141671b8d3d9217715f24727576aa2f16fcfe85f0ada0946d3596
  • dovecot-pgsql-2.3.16-5.el8.tuxcare.els1.x86_64.rpm
    sha:94c706b8f029d6d63b20c028021342ff4ec8792a9babba91ce9ae1acb19b9d7e
  • dovecot-pigeonhole-2.3.16-5.el8.tuxcare.els1.x86_64.rpm
    sha:9e8764fb6185a8b2ae6e6d641c139a2aa88584d41fdafc211eaae3c2ebcfc4fe
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.