Fixes a heap overflow (CVE-2021-44143), and multiple buffer overflows (CVE-2021-3657). OK kn@ (maintainer)