{
  "cves": [
    "CVE-2025-59032",
    "CVE-2026-27857",
    "CVE-2026-27858"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[1:2.3.16-15.1]\n- fix CVE-2026-27858: denial of service via crafted message before authentication (RHEL-161639)\n- fix CVE-2025-59032: ManageSieve: Denial of Service via crafted SASL initial response in AUTHENTICATE command (RHEL-162287)\n- fix CVE-2026-27857: denial of service via specially crafted NOOP command (RHEL-161678)",
  "id": "ELSA-2026-13857",
  "ovalId": "oval:com.oracle.elsa:def:202613857",
  "source": "oracle_linux",
  "title": "ELSA-2026-13857:  dovecot security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-13857.html"
}