[CLSA-2026:1779360036] dovecot: Fix of CVE-2026-42006
Type:
security
Severity:
Low
Release date:
2026-05-21 10:40:45 UTC
Description:
- CVE-2026-42006: fix imap-login list_count_limit to actually limit open '(' characters; the previous fix limited closing ')' instead, leaving the bracing memory exhaustion vector open
Updated packages:
  • dovecot-2.3.8-9.el8.tuxcare.els5.i686.rpm
    sha:a2e0b33f6656bae6087614062f6e5b09f88e97137dfb0bbe17d1b658cb4638a8
  • dovecot-2.3.8-9.el8.tuxcare.els5.x86_64.rpm
    sha:39f3dd30b339b81f759628a3ba04cb696dc71fe84d41d4f2c7bac6b091eef4a8
  • dovecot-devel-2.3.8-9.el8.tuxcare.els5.i686.rpm
    sha:162ecacd570192bfed67988d76bc783927c5e8f4cac9e5da5d5e50543f9019c0
  • dovecot-devel-2.3.8-9.el8.tuxcare.els5.x86_64.rpm
    sha:1710c8dc3f4e159aba2e4ba3522fe0d19aed114b0bcb06a6665a3294ee1f60ab
  • dovecot-mysql-2.3.8-9.el8.tuxcare.els5.x86_64.rpm
    sha:6e48d2d5f5e41ec29810d6df38baaa6c75383038ddd8bc3d6596aff9215ee6a6
  • dovecot-pgsql-2.3.8-9.el8.tuxcare.els5.x86_64.rpm
    sha:ecaf307237ab8e3efd57372e2680f0ac00b73e40fff2549241619fb33914abb8
  • dovecot-pigeonhole-2.3.8-9.el8.tuxcare.els5.x86_64.rpm
    sha:1511e858df44586488b8be1dbe149ccfa529e7f93fdcd4e337590598c6dadb7f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.