OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "camlp4", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "camlp4-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "camlp4-extra", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "camlp4-extra-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-base", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-base-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-base-nox", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-base-nox-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-compiler-libs", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-interp", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-mode", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-native-compilers", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-native-compilers-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-nox", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-nox-dbgsym", "binary_version": "4.01.0-3ubuntu3.1" }, { "binary_name": "ocaml-source", "binary_version": "4.01.0-3ubuntu3.1" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "ocaml", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-base", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-base-dbgsym", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-base-nox", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-base-nox-dbgsym", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-compiler-libs", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-interp", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-mode", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-native-compilers", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-native-compilers-dbgsym", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-nox", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-nox-dbgsym", "binary_version": "4.02.3-5ubuntu2+esm1" }, { "binary_name": "ocaml-source", "binary_version": "4.02.3-5ubuntu2+esm1" } ] }