Errata ID | 621 |
---|---|
Date | 2020-06-10 |
Source package | firefox-esr |
Fixed in version | 68.9.0esr-1~deb9u1 |
Description | This update addresses the following issues: * Timing attack on DSA signature generation (CVE-2020-12399) * Use-after-free in SharedWorkerService (CVE-2020-12405) * JavaScript Type confusion with NativeTypes (CVE-2020-12406) * Memory safety bugs fixed in Firefox 77 and Firefox ESR 68.9 (CVE-2020-12410) |
Additional notes | |
CVE ID | CVE-2020-12399 CVE-2020-12405 CVE-2020-12406 CVE-2020-12410 |
UCS Bug number | #51453 |