CVE-2017-7789
11.06.2018, 21:29
If a server sends two Strict-Transport-Security (STS) headers for a single connection, they will be rejected as invalid and HTTP Strict Transport Security (HSTS) will not be enabled for the connection. This vulnerability affects Firefox < 55.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 < 55.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References