Tuesday, August 24, 2021

MFSA2021-37 Thunderbird: Security Vulnerabilities fixed in Firefox 91.0.1 and Thunderbird 91.0.1 (CVE-2021-29991)

Description
Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack against servers using HTTP/3.
Solution(s)
  • mozilla-thunderbird-upgrade-91_0_1


  • References
  • https://attackerkb.com/topics/cve-2021-29991
  • CVE - 2021-29991
  • http://www.mozilla.org/security/announce/2021/mfsa2021-37.html




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore