PT-2026-28619 · Ocaml · Ocaml
Published
2026-03-27
·
Updated
2026-04-11
·
CVE-2026-34353
CVSS v3.1
5.9
Medium
| Vector | AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
OCaml versions through 4.14.3
Description
The Bigarray.reshape function in OCaml versions through 4.14.3 contains an integer overflow issue. This can lead to arbitrary memory being read when processing untrusted data. The function
Bigarray.reshape is susceptible to this issue.Recommendations
Update to a version of OCaml newer than 4.14.3. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ocaml