At Progress, security is a top priority. Upon notification, we conducted a thorough review of the Progress product portfolio, and our internal diligence indicates that our products, including Chef, are not using the impacted version of OpenSSL as shipped and/or deployed. We do, however, recommend that customers conduct their own due diligence with respect to any third-party components that may be utilized in their environments and take the appropriate actions recommended by those third parties.
We will continue to closely monitor the OpenSSL vulnerability and provide updates on the Progress Security Center as necessary. If you have additional questions regarding this message, you may contact security@progress.com and we will quickly address those questions or concerns.
For more information regarding our security practices and privacy posture, please visit our Security Center and Privacy Center.