Vulnerability CVE-2021-29991: Information

Description

Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack against servers using HTTP/3. This vulnerability affects Firefox < 91.0.1 and Thunderbird < 91.0.1.

Severity: HIGH (8.1) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

Published: Nov. 3, 2021
Modified: Nov. 5, 2021
Error type identifier: CWE-444

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus91.0.1-alt1125.0.2-alt1ALT-PU-2021-2576-1283309Fixed
firefoxp1092.0-alt1118.0.2-alt0.p10.1ALT-PU-2021-2849-1284964Fixed
firefoxp993.0-alt0.p9.1105.0.1-alt0.c9.1ALT-PU-2022-1782-1288073Fixed
firefoxc10f192.0-alt1112.0.2-alt0.p10.1ALT-PU-2021-2849-1284964Fixed
firefoxc9f293.0-alt0.p9.1105.0.1-alt0.c9.1ALT-PU-2021-3368-1288792Fixed
firefox-esrsisyphus91.0.1-alt1115.10.0-alt1ALT-PU-2021-2725-1284617Fixed
firefox-esrp1091.1.0-alt1115.10.0-alt1ALT-PU-2021-2881-1284980Fixed
firefox-esrp991.7.0-alt0.p9.1102.11.0-alt0.c9.1ALT-PU-2022-1781-1288073Fixed
firefox-esrc10f191.1.0-alt1115.9.1-alt0.c10.1ALT-PU-2021-2881-1284980Fixed
firefox-esrc9f291.3.0-alt1.c9.1102.12.0-alt0.c9.1ALT-PU-2021-3369-1288792Fixed
thunderbirdsisyphus91.0.2-alt1115.9.0-alt1ALT-PU-2021-2636-1283729Fixed
thunderbirdp1091.0.3-alt1115.9.0-alt1ALT-PU-2021-2718-1283946Fixed
thunderbirdp991.6.0-alt0.p9.1102.11.0-alt0.c9.1ALT-PU-2022-1783-1288073Fixed
thunderbirdc10f191.0.3-alt1115.9.0-alt0.c10.1ALT-PU-2021-2718-1283946Fixed
thunderbirdc9f291.3.0-alt0.c9.1102.11.0-alt0.c9.1ALT-PU-2021-3370-1288792Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
      End excliding
      91.0.1

      cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
      End excliding
      91.0.1