The mystery surrounding the vulnerability was to prevent cybercriminals from exploiting the hole before the fix is released to the public.
There has been speculation that this vulnerability could be another Heartbleed or POODLE bug that were considered to be the worst TLS/SLL vulnerabilities that may still be affecting websites on the Internet today.
Here s a little history on both of these bus which we reported in previous advisories. Heartbleed, discovered in April last year, was a bug in an earlier version of OpenSSL that allowed hackers to read sensitive contents of victims’ encrypted data, including credit card details. It also allowed the hackers to steal crypto SSL keys from the Internet servers or client software.
Some months later, another critical flaw known as POODLE (Padding Oracle On Downgraded Legacy Encryption) in the old but widely used SSL 3.0 cryptographic protocol that allowed hackers to decrypt the contents of encrypted connections.
For more of high severity vulnerabilities that were fixed in March this year, go here.