CVE-2014-8139: CRC32 verification heap-based overflow CVE-2014-8140: out-of-bounds write issue in test_compr_eb() CVE-2014-8141: out-of-bounds read issues in getZip64Data() CVE-2014-9636: out-of-bounds read/write in test_compr_eb() Via Debian; ok sthen@