Security advisories for OpenSSL should not be used for competitive advantage. The OpenSSL Project has published guidelines for how it internally handles security problems. The guidelines are part of an effort to strengthen the project following the Heartbleed security scare in April. The more people that are notified in advance, “the higher the likelihood that a leak will occur,” the project says. OpenSSL is a cryptographic library that enables SSL (Secure Sockets Layer) or TLS (Transport Security Layer) encryption.”]

