I'd be glad if Erlang core team could give an idea about how the vulnerability of CVE-2014-0224 would or would not affect Erlang ssl module: http://www.openssl.org/news/secadv_20140605.txt http://ccsinjection.lepidum.co.jp/blog/2014-06-05/CCS-Injection-en/index.html Regards, Kenji Rikitake