KB Article #175944
Heartbleed Vulnerabiltiy and Gateway Interchange
Heartbleed
The Heartbleed Bug is a serious vulnerability in the popular OpenSSL cryptographic software library. This weakness allows stealing the information protected, under normal conditions, by the SSL/TLS encryption used to secure the Internet. SSL/TLS provides communication security and privacy over the Internet for applications such as web, email, instant messaging (IM) and some virtual private networks (VPNs).
Heartbleed has 2 CVE identifiers: CVE-2014-0160 and CVE-2014-0346. The second CVE is deprecated and CVE-2014-0160 should be considered the canonical CVE.