Fix handling of extended header prefixes (CVE-2023-39804)

Closes: #1058079

Merge request reports

Loading