OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | <= 6.6.* |