Errata overview
Errata ID 621
Date 2020-06-10
Source package firefox-esr
Fixed in version 68.9.0esr-1~deb9u1
Description
This update addresses the following issues:
* Timing attack on DSA signature generation (CVE-2020-12399)
* Use-after-free in SharedWorkerService (CVE-2020-12405)
* JavaScript Type confusion with NativeTypes (CVE-2020-12406)
* Memory safety bugs fixed in Firefox 77 and
  Firefox ESR 68.9 (CVE-2020-12410)
Additional notes
CVE ID CVE-2020-12399
CVE-2020-12405
CVE-2020-12406
CVE-2020-12410
UCS Bug number #51453