Errata overview
Errata ID 642
Date 2020-03-11
Source package firefox-esr
Fixed in version 68.5.0esr-1~deb9u1
Description
This update addresses the following issues:
* Missing bounds check on shared memory read in the parent process
  (CVE-2020-6796)
* Incorrect parsing of template tag could result in JavaScript injection
  (CVE-2020-6798)
* Memory safety bugs (CVE-2020-6800)
Additional notes
CVE ID CVE-2020-6796
CVE-2020-6798
CVE-2020-6800
UCS Bug number #50912