SECURITY UPDATE: libcurl would reuse a previously created connection even
when a TLS or SSH related option had been changed that should have
prohibited reuse.
debian/patches/CVE-2022-27782-tls.patch: add missing primary checks of
tls parameters before connection reuse