1. aptitude update && aptitude upgrade 2. ask yourself, if your system is vulnerable now 3. feel the good hope and go ahead.
If I had the budget / time to research every single CVE I would probably not trust repositories at all...
do YOU trust repositories?