Red Hat Bugzilla – Bug 1479212
CVE-2017-7797 Mozilla: Response header name interning leaks across origins (MFSA 2017-18)
Last modified: 2017-08-24 03:35:39 EDT
Response header name interning does not have same-origin protections and are stored in a global registry. This allows stored header names to be available cross-origin. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2017-18/#CVE-2017-7797 Acknowledgements: Name: the Mozilla project Upstream: Anne van Kesteren