Disable user-agent spoofing in HTTP header

Gah! privacy.resistFingerprinting.spoofOsInUserAgentHeader should be false in TB14+. The original intent of #42647 (closed) was that we turn off spoofing OS and ESR changes are the perfect time to do it.

@morgan @pierov