Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-34353

Опубликовано: 27 мар. 2026
Источник: debian
EPSS Низкий

Описание

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ocamlfixed5.2.0-1package
ocamlno-dsabookwormpackage

Примечания

  • https://github.com/ocaml/ocaml/issues/14655

  • Fixed as side effect in: https://github.com/ocaml/ocaml/pull/11022

  • Fixed by: https://github.com/ocaml/ocaml/commit/c667d0e1c5284f5ec46ee4a99b149fa5ac5dfe30 (5.0.0-alpha0)

  • Backport for 4.13.y series: https://github.com/ocaml/ocaml/pull/14691

EPSS

Процентиль: 2%
0.00114
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
4 месяца назад

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

CVSS3: 5.9
redhat
4 месяца назад

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

CVSS3: 5.9
nvd
4 месяца назад

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

CVSS3: 5.9
msrc
4 месяца назад

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

CVSS3: 5.9
github
4 месяца назад

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

EPSS

Процентиль: 2%
0.00114
Низкий