March 3, 2015 a security flaw regarding SSL/TLS has been discovered.
That allows?
Well exploited the latter would allow an attacker to decrypt encrypted connections.
A connection is vulnerable if the server accepts the RSA_EXPORT cipher suites and the client also emits a cipher RSA_EXPORT suite or uses a version of OpenSSL vulnerable to CVE-2015-0204 as exported RSA keys are 512-bit keys.