PT-2026-28619 · Ocaml · Ocaml

CVE-2026-34353

·

Published

2026-03-27

·

Updated

2026-06-27

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions OCaml versions through 4.14.3
Description The Bigarray.reshape function in OCaml versions through 4.14.3 contains an integer overflow issue. This can lead to arbitrary memory being read when processing untrusted data. The function Bigarray.reshape is susceptible to this issue.
Recommendations Update to a version of OCaml newer than 4.14.3. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-81104
CVE-2026-34353
OESA-2026-1889
OESA-2026-1890
OESA-2026-1891
OESA-2026-1892
OESA-2026-1893
OPENSUSE-SU-2026:11136-1
OSEC-2026-04

Affected Products

Ocaml