Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 477
Alerts This Week
Warning Icon 1 477

Oracle Linux 9 Dovecot Important IMAP Bypass Vulnern ELSA-2026-41905

oracle
Calendar Grey July 22, 2026
Scroller Oracle
Updated Dovecot rpms for Oracle Linux 9, addressing important issues to enhance security. See advisory ELSA-2026-41905 for details.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1:2.3.16-18.1] - fix CVE-2026-42006: IMAP parser list_count_limit bypass via open parentheses (RHEL-188468)

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates/dovecot-2.3.16-18.el9_8.1.src.rpm

x86_64

dovecot-2.3.16-18.el9_8.1.i686.rpm dovecot-2.3.16-18.el9_8.1.x86_64.rpm dovecot-devel-2.3.16-18.el9_8.1.i686.rpm dovecot-devel-2.3.16-18.el9_8.1.x86_64.rpm dovecot-mysql-2.3.16-18.el9_8.1.x86_64.rpm dovecot-pgsql-2.3.16-18.el9_8.1.x86_64.rpm dovecot-pigeonhole-2.3.16-18.el9_8.1.x86_64.rpm

aarch64

dovecot-2.3.16-18.el9_8.1.aarch64.rpm dovecot-devel-2.3.16-18.el9_8.1.aarch64.rpm dovecot-mysql-2.3.16-18.el9_8.1.aarch64.rpm dovecot-pgsql-2.3.16-18.el9_8.1.aarch64.rpm dovecot-pigeonhole-2.3.16-18.el9_8.1.aarch64.rpm

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2026-42006

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.