QID 375824
Date Published: 2021-08-25
QID 375824: Mozilla Firefox Header Splitting Vulnerability(MFSA2021-37)
Firefox is a free and open-source web browser developed for Windows, OS X, and Linux, with a mobile version for Android.
Affected Products:
Prior to Firefox 91
QID Detection Logic (Authenticated):
This checks for vulnerable version of Firefox browser
This allowed for a header splitting attack against servers using HTTP/3.
Solution
Vendor has released fix to address these vulnerabilities. Refer to MFSA2021-37
Vendor References
- MFSA2021-37 -
www.mozilla.org/en-US/security/advisories/mfsa2021-37
CVEs related to QID 375824
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| MFSA2021-37 |
|