CVE-2014-0160: OpenSSL Information Disclosure Vulnerability. The TLS and
OpenSSL Information Disclosure Vulnerability. The TLS and DTLS implementations in OpenSSL do not properly handle Heartbeat Extension packets, which allows remote attackers to obtain sensitive information.
- CISA KEV-listed (remediation due 2022-05-25)
- EPSS 94.5% (100.0% percentile)