| Errata ID | 460 |
|---|---|
| Date | 2020-03-11 |
| Source package | firefox-esr |
| Fixed in version | 68.5.0esr-1~deb9u1 |
| Description | This update addresses the following issues: * Missing bounds check on shared memory read in the parent process (CVE-2020-6796) * Incorrect parsing of template tag could result in JavaScript injection (CVE-2020-6798) * Memory safety bugs (CVE-2020-6800) |
| Additional notes | |
| CVE ID | CVE-2020-6796 CVE-2020-6798 CVE-2020-6800 |
| UCS Bug number | #50865 |
