debian/patches/CVE-2022-2795.patch: adds limits in fctx_getaddresses
to avoid spending excessive amounts of time on processing large
delegations in resolver code in lib/dns/resolver.c.
CVE-2022-2795
SECURITY UPDATE: memory leak
debian/patches/CVE-2022-38177.patch: avoid return DSTRET when there is a
signature length mismatch in lib/dns/opensslecdsalink.c.