Over the last few weeks many software and service providers have been impacted by the OpenSSL Heartbleed vulnerability but Arpeggio Software customers are not among them.

 

The Open SSL Heartbleed vulnerability (CVE-2014-0160) has created many disruptions over the last few weeks, rightfully so, as it is a serious vulnerability in the popular OpenSSL cryptographic software library.  Although Arpeggio uses the OpenSSL library in many of our products the version we use (1.0.0h) is not one of the ones affected.

 

We do suggest that you contact any of your software providers who may have ported applications to your PASE environment.   Some versions of linux had the OpenSSL vulnerability shipped with their operating system.