A vulnerability in SSLv3 allows the plaintext of secure connections to be calculated by an attacker on the network. Google’s Bodo Mller, along with fellow researchers Thai Duong and Krzysztof Kotowicz, disclosed the issue on Tuesday. The problem centers on the fact that, in order to work with legacy servers, most TLS clients will downgrade each time a secure connection attempt (handshake) fails. Google recommends that SSL v3 be disabled in the client or server (even both) to prevent this attack.”]
Source: https://www.csoonline.com/article/2833912/dreaded-sslv3-bug-no-monster-only-a-poodle.html