CVE-2021-29991
NixOS vulnerability analysis and mitigation

Overview

CVE-2021-29991 is a security vulnerability discovered in Firefox and Thunderbird that was disclosed on August 16, 2021. The vulnerability affected Firefox versions prior to 91.0.1 and Thunderbird versions prior to 91.0.1. The issue arose when Firefox incorrectly accepted a newline in an HTTP/3 header, interpreting it as two separate headers, which allowed for a header splitting attack against servers using HTTP/3 (Mozilla Advisory, NVD).

Technical details

The vulnerability was assigned a CVSS v3.1 base score of 8.1 (High), with the vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N. The issue stems from Firefox's incorrect interpretation of newlines in HTTP headers specifically in HTTP/3 connections, which could lead to HTTP request/response smuggling attacks. The vulnerability was classified under CWE-444 (Inconsistent Interpretation of HTTP Requests) (NVD).

Impact

The vulnerability could allow attackers to perform header splitting attacks against servers using HTTP/3, potentially leading to critical security problems on websites. This was particularly concerning as early adopters of HTTP/3 tend to be major, popular websites with large user bases (Bugzilla).

Mitigation and workarounds

The vulnerability was fixed in Firefox 91.0.1 and Thunderbird 91.0.1. The fix involved sanitizing headers by replacing problematic control characters with spaces, making the HTTP/3 implementation behave similarly to HTTP/2 where this behavior was well-tested (Mozilla Advisory).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-48606HIGH7.8
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48625HIGH7
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48608MEDIUM5.5
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48569MEDIUM5.5
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-65799MEDIUM4.3
  • NixOSNixOS
  • memos
NoYesDec 08, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management