[liberationtech] OpenSSL Heartbleed Vulnerability Patched

Yosem Companys companys at stanford.edu
Tue Apr 8 16:23:21 PDT 2014


From: Todd Greene <todd at pubnub.com>

There has been a lot of news in the past 24 hours regarding the
Heartbleed Bug (CVE-2014-0160) as reported by the OpenSSL project. If you
are not aware of the situation, the Heartbleed Bug is a serious
vulnerability in the popular OpenSSL cryptographic software library. The
bug allows anyone on the Internet to read the memory of the systems
protected by the vulnerable versions of the OpenSSL software.

We take security and privacy of customer data very seriously at PubNub.
To this end, I would like to let you know personally that as of 12:00am
Pacific this morning, we have applied the patch released by the OpenSSL
project to all of PubNub's machines and services. No further action is
required by PubNub's customers to address this vulnerability.

For more information about the Heartbleed Bug, check out
www.heartbleed.com. If you have any questions or concerns, please shoot
us a note at help at pubnub.com and we will respond promptly.

Best regards,

Todd

Todd Greene
CEO, PubNub
+1 415 562 7682


PubNub
725 Folsom
San Francisco, CA 94107
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.stanford.edu/pipermail/liberationtech/attachments/20140408/e25eb688/attachment.html>


More information about the liberationtech mailing list