---
title: "OpenSSL TLS heartbeat read overrun defect (Heartbleed)"
slug: "openssl-tls-heartbeat-read-overrun-defect-heartbleed"
updated: 2024-04-01T13:27:30Z
published: 2024-04-01T13:27:30Z
canonical: "kb.pharos.com/openssl-tls-heartbeat-read-overrun-defect-heartbleed"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://kb.pharos.com/llms.txt
> Use this file to discover all available pages before exploring further.

# OpenSSL TLS heartbeat read overrun defect (Heartbleed)

**Are Pharos products affected by the OpenSSL "Heartbleed" defect?**

---

The OpenSSL TLS heartbeat read overrun defect (CVE-2014-0160), termed "Heartbleed", specifically affects the OpenSSL 1.0.1 libraries. The exploit targets web services via the TLS extension for heartbeat.

[h](https://www.openssl.org/news/secadv_20140407.txt)[ttps://www.openssl.org/news/secadv_20140407.txt](https://www.openssl.org/news/secadv_20140407.txt)

Most Pharos products are based upon Microsoft libraries, not OpenSSL. Pharos EDI and SignUp rely on Microsoft IIS. MobilePrint relies upon .NET Web-API. These systems use Microsoft SSL libraries, such as SChannel, not OpenSSL.

[h](http://blogs.technet.com/b/erezs_iis_blog/archive/2014/04/09/information-about-heartbleed-and-iis.aspx)[ttp://blogs.technet.com/b/erezs_iis_blog/archive/2014/04/09/information-about-heartbleed-and-iis.aspx](http://blogs.technet.com/b/erezs_iis_blog/archive/2014/04/09/information-about-heartbleed-and-iis.aspx)

Not all supporting libraries are Microsoft. Each Development team is evaluating their non-Microsoft libraries to confirm whether any Pharos products are affected.

Thus far, Development has finished their review of the following products and concluded that they are not affected.

- Uniprint - All versions
- Blueprint - All versions
- MobilePrint - All versions
- Omega PSX - Firmware 1.1.4
- Omega PS200 - Firmware 1.0.1
- Omega PS60 - Firmware 1.1.4
- Omega PS60B - Firmware 1.0.0

We'll continue to post updates to this article as we continue evaluating all of our products.

## Related

- [Lexmark iMFP fails to connect to the Blueprint EDI Service.](/lexmark-imfp-fails-to-connect-to-the-blueprint-edi-service.md)
- [Sentry SR25 - How to obtain a log file from the SR25 device.](/sentry-sr25-how-to-obtain-a-log-file-from-the-sr25-device.md)
- [Blueprint: Test failed. The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.](/blueprint-test-failed-the-underlying-connection-was-closed-could-not-establish-trust-relationship-for-the-ssltls-secure-channel.md)
- [Omega PS150 - Error: "object reference not set to an instance of an object"](/omega-ps150-error-object-reference-not-set-to-an-instance-of-an-object.md)
