Mozilla patches High risk vulnerability in Firefox 91.0.1

Mozilla patches High risk vulnerability in Firefox 91.0.1

The Mozilla Foundation has patched a High risk vulnerability in Firefox 91.0.1.

An attacker could exploit the vulnerability to take control of impacted systems.

As part of Mozilla Foundation Security Advisory 2021-37, Firefox 91.0.1 addressed just one “Header Splitting possible with HTTP/3 Responses” vulnerability CVE-2021-29991.

“Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack against servers using HTTP/3.

This is the first security release since Firefox 91 was released last week, with six security fixes and a new Windows SSO feature among other privacy enhancements.

Related Articles