When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:6906 https://access.redhat.com/errata/RHSA-2026:6906
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:6907 https://access.redhat.com/errata/RHSA-2026:6907
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:6923 https://access.redhat.com/errata/RHSA-2026:6923
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:7002 https://access.redhat.com/errata/RHSA-2026:7002
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:7343 https://access.redhat.com/errata/RHSA-2026:7343
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:13634 https://access.redhat.com/errata/RHSA-2026:13634
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:13680 https://access.redhat.com/errata/RHSA-2026:13680
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:13839 https://access.redhat.com/errata/RHSA-2026:13839
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:14836 https://access.redhat.com/errata/RHSA-2026:14836