Lucene search

K
osvGoogleOSV:USN-5047-1
HistoryAug 19, 2021 - 2:53 p.m.

firefox vulnerability

2021-08-1914:53:59
Google
osv.dev
9
firefox
http/3
vulnerability
header splitting
website
attack

AI Score

6.4

Confidence

Low

EPSS

0.002

Percentile

53.0%

It was discovered that Firefox could be made to incorrectly accept
newlines in HTTP/3 response headers. If a user were tricked into
opening a specially crafted website, an attacker could exploit this
to conduct header splitting attacks.