It was brought to our attention that many clients subscribe to this build announcements thread and only update Centova Cast when this thread is updated. Accordingly they may not have noticed the announcement of a resolution for the now-infamous Heartbleed bug in OpenSSL which was posted prominently on the front page of our web site.
This is just a late reminder to everyone that we released an update for the Heartbleed bug back on April 8th (within 24hr of the public disclosure of Heartbleed), and that any clients utilizing Centova Cast's SSL support should upgrade immediately if they have not already done so. Centova Cast does use OpenSSL and thus Centova Cast's web server is vulnerable to Heartbleed on servers where SSL is being used to access Centova Cast. (In a nutshell, if the URL you use for Centova Cast starts with "https://", you are vulnerable and need to update.)
Those who are using self-signed SSL certificates and are concerned that their private key may have been compromised can regenerate them using the instructions in
this thread.