[CLSA-2026:1777976700] dovecot: Fix of CVE-2026-27857
Type:
security
Severity:
Important
Release date:
2026-05-05 10:25:05 UTC
Description:
- CVE-2026-27857: limit the number of open IMAP parser lists in imap-login to prevent excessive memory usage from deeply nested parentheses (e.g. NOOP (((...))))
Updated packages:
  • dovecot-2.3.8-9.el8.tuxcare.els3.i686.rpm
    sha:76120e5683dc736204d78ed263e26b2864bf3a29cf2ab22512a7d9f389d01e88
  • dovecot-2.3.8-9.el8.tuxcare.els3.x86_64.rpm
    sha:8d5910e8a4905e06d784551d6122ce9d8a078cfdb01c68be206ee7bc43a4c897
  • dovecot-devel-2.3.8-9.el8.tuxcare.els3.i686.rpm
    sha:c35025122d5aa8d82574c64fda726273c1d7e5b0f23e9f5566b555f89cb7dfdb
  • dovecot-devel-2.3.8-9.el8.tuxcare.els3.x86_64.rpm
    sha:e32f5f08cf356838b49e3ed9d32294807a11713da22e4c5ba72ffc82490353a7
  • dovecot-mysql-2.3.8-9.el8.tuxcare.els3.x86_64.rpm
    sha:29543e9e3409d0baa0942c177ada5da7295f6464fa5080a4434652d723ad0db7
  • dovecot-pgsql-2.3.8-9.el8.tuxcare.els3.x86_64.rpm
    sha:3f1b018c7cbd4e8d69cea4dbd14832d6aa124df17ffde3cc283298dceeeb65e5
  • dovecot-pigeonhole-2.3.8-9.el8.tuxcare.els3.x86_64.rpm
    sha:74fb9f08f6511c92b407c5b8a697cc5e662ac1ecdd506818e885c664a794a833
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.