Hello here!

I think, I have found a pretty significant security-related bug in
OpenSSL library. What are the guidelines for reporting them?
Should I post it directly on the mailing list? Or to provide the info to
maintainer first?

Best regards,
Ing. Andrey Romanov
CompEd Software Design Srl,

