A serious security flaw has been uncovered in versions of OpenSSLs transport layer security (TLS) protocols. Security experts say large numbers of private keys and other secret information has been left exposed for long periods of time as a result of the programming screw-up. The advice is to update to the just-released OpenSSL 1.0.1g immediately, and regenerate your private keys. Software developers are advised to recompile OpenSSL with the compile time option OPENSSL_NO_HEARTBEATS.”]

