The OpenSSL library, one of the more widely deployed cryptographic libraries on the Web, has fixed a serious vulnerability that could have resulted in the revelation of 64 KB of memory to any client or server that was connected. The library is deployed in a huge number of operating systems and applications, including a wide variety of Unix and Linux distributions, as well as OS X. The details of the vulnerability, fixed in version 1.0.1g of OpenSSL, are scarce. CloudFlare has implemented a fix for the vulnerability last week, before the details were disclosed.
Source: https://threatpost.com/openssl-fixes-tls-vulnerability/105300/

