SECURITY UPDATE: heap buffer over-read with wavelet-denoise operator
debian/patches/CVE-2026-27798.patch: use 4columns instead of 3columns
for resource and memory allocation in WaveletDenoiseImage to prevent
over-read when processing small-dimension images