This is definitely far from Heartbleed level of catastrophe.
Ubuntu v22.04 is vulnerable, but any before it is not. Debian is good (except bookworm which is currently in testing), Fedora (<36) is good, RHEL/CentOS (<9), Arch...
So on top of being not as serious as Heartbleed, servers that are a bit longer in operation (but still well within their support cycle) don't need patching.
https://github.com/NCSC-NL/OpenSSL-2022/tree/main/software
EDIT just to add this quote from their blog post (https://www.openssl.org/blog/blog/2022/11/01/email-address-o...):
> We did release an update to OpenSSL 1.1.1, namely 1.1.1s, also on 1st November 2022, but this is a bug fix release only and does not include any security fixes.
Surprisingly enough, Arch Linux, a rolling release distro, still hasn't. It's a real mixed bag.
https://github.com/NCSC-NL/OpenSSL-2022/blob/main/software/R...
As a client, you're only affected if you connect to a malicious server.