Количество 11
Количество 11
CVE-2026-27856
Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.
CVE-2026-27856
Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.
CVE-2026-27856
Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.
CVE-2026-27856
Doveadm credentials are verified using direct comparison which is susc ...
ROS-20260707-80-0039
Уязвимость dovecot
GHSA-mv3x-9fw3-qf38
Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.
BDU:2026-10401
Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260707-73-0041
Уязвимость dovecot
ELSA-2026-26564
ELSA-2026-26564: dovecot security update (IMPORTANT)
SUSE-SU-2026:1641-1
Security update for dovecot22
openSUSE-SU-2026:20554-1
Security update for dovecot24
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-27856 Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known. | CVSS3: 7.4 | 0% Низкий | 6 месяцев назад | |
CVE-2026-27856 Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known. | CVSS3: 7.4 | 0% Низкий | 6 месяцев назад | |
CVE-2026-27856 Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known. | CVSS3: 7.4 | 0% Низкий | 6 месяцев назад | |
CVE-2026-27856 Doveadm credentials are verified using direct comparison which is susc ... | CVSS3: 7.4 | 0% Низкий | 6 месяцев назад | |
ROS-20260707-80-0039 Уязвимость dovecot | CVSS3: 5.9 | 0% Низкий | 2 месяца назад | |
GHSA-mv3x-9fw3-qf38 Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known. | CVSS3: 7.4 | 0% Низкий | 6 месяцев назад | |
BDU:2026-10401 Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5.9 | 0% Низкий | 6 месяцев назад | |
ROS-20260707-73-0041 Уязвимость dovecot | CVSS3: 5.9 | 0% Низкий | 2 месяца назад | |
ELSA-2026-26564 ELSA-2026-26564: dovecot security update (IMPORTANT) | около 1 месяца назад | |||
SUSE-SU-2026:1641-1 Security update for dovecot22 | 5 месяцев назад | |||
openSUSE-SU-2026:20554-1 Security update for dovecot24 | 5 месяцев назад |
Уязвимостей на страницу