CVE-2026-27859
CVE-2026-27859
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 0.4%KEV nãoPoC —Patch referenciado
Lifecycle
Mar 27, 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A mail message containing excessive amount of RFC 2231 MIME parameters causes LMTP to use too much CPU. A suitably formatted mail message causes mail delivery process to consume large amounts of CPU time. Use MTA capabilities to limit RFC 2231 MIME parameters in mail messages, or upgrade to fixed version where the processing is limited. No publicly available exploits are known.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Affected products
Open-Xchange GmbH · OX Dovecot ProWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →