[CLSA-2026:1778173027] dovecot: Fix of CVE-2026-27858
Type:
security
Severity:
Important
Release date:
2026-05-07 16:57:27 UTC
Description:
- CVE-2026-27858: fix unbounded memory allocation in managesieve-login when AUTHENTICATE initial response literal size is excessively large
Updated packages:
  • dovecot-2.3.8-9.el8.tuxcare.els4.i686.rpm
    sha:04ea13f30f229fae8bf79d28f61038b61aeb784cf876727179b966ecf892169a
  • dovecot-2.3.8-9.el8.tuxcare.els4.x86_64.rpm
    sha:94e458b2c00111d4bbfa3a3dc11bd8546cf199c26fe042da27831db78073604b
  • dovecot-devel-2.3.8-9.el8.tuxcare.els4.i686.rpm
    sha:0caa5b9b68a2f1b20a0082083e29c103c18484fa184e13eb375974e4898d970e
  • dovecot-devel-2.3.8-9.el8.tuxcare.els4.x86_64.rpm
    sha:b2fbed19bbe6b6a5a5999f1866003a13a4248820dfffa74bec3500a62e29d173
  • dovecot-mysql-2.3.8-9.el8.tuxcare.els4.x86_64.rpm
    sha:9dee1aeb209de935b41aaa6e45ad04b63ec8d1d747eb36b37de7bdff49504387
  • dovecot-pgsql-2.3.8-9.el8.tuxcare.els4.x86_64.rpm
    sha:115c2951e73cd9368945e0ba9fced7126cc75313b62fb588337ba4d7c71b88c6
  • dovecot-pigeonhole-2.3.8-9.el8.tuxcare.els4.x86_64.rpm
    sha:f33e71754f254ef1bbe7d72d6db1c54dd65d1e1b69f570ea432890d6bcfaf396
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.