[CLSA-2026:1778883479] dovecot: Fix of CVE-2026-27857
Type:
security
Severity:
Important
Release date:
2026-05-15 22:18:09 UTC
Description:
- CVE-2026-27857: improve fix by enforcing list_count_limit on '(' (open_list) instead of ')' (close_list); the previous fix did not actually limit memory growth from many '(' characters
Updated packages:
  • dovecot-2.2.36-8.el7.tuxcare.els2.i686.rpm
    sha:31a5da21a07c28cc240d22f380423d89b858e261a8ce4b1f015eb7df6f4fd71b
  • dovecot-2.2.36-8.el7.tuxcare.els2.x86_64.rpm
    sha:1c6c3653e67df2f3364aea68293ffeb8988f0bb93acf6da600da95c5ca2164e8
  • dovecot-devel-2.2.36-8.el7.tuxcare.els2.i686.rpm
    sha:ad00c45f0d2482c9c5ac22c833fb63882198d6730855c68a6d019ddc40311723
  • dovecot-devel-2.2.36-8.el7.tuxcare.els2.x86_64.rpm
    sha:5eb59163fdcc01450aad4768c921fc8ba0841b844e5449dc1ebace84fed1c175
  • dovecot-mysql-2.2.36-8.el7.tuxcare.els2.x86_64.rpm
    sha:93fe34ca14154cc8502497ad4baa8932d5a62c1261b21df012b5b4f8ba2ce328
  • dovecot-pgsql-2.2.36-8.el7.tuxcare.els2.x86_64.rpm
    sha:f8278547888eb957cd3826c7aeb8f8e1eeefc29cf7c59b61b71f21af589c6b9c
  • dovecot-pigeonhole-2.2.36-8.el7.tuxcare.els2.x86_64.rpm
    sha:4c79495b656863ac1f8156e6d53fa4e05700eef71a5ac69892b13c167d70e44a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.