Given the severe nature of this most servers are patched already - Manjaro came with an OpenSSL update today.
http://www.openssl.org/news/secadv_20140605.txt
There is an critical eye on this code after every heavy weight tech company in the world decided to support the code under the coordination of the Linux foundation.
So finding stuff and eliminate it is a good thing...