Debian-LTS has issued an advisory today (November 2): http://lwn.net/Alerts/705329/ We may have fixed these issues, due to updating to the latest code from upstream, but seeking confirmation here.
After looking at the Debian-LTS alert, I can confirm that all the listed CVEs are already fixed in our packages.
Status: NEW => RESOLVEDResolution: (none) => FIXED