Filtered by vendor Inria Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2012-0839 1 Inria 1 Ocaml 2023-02-13 N/A
OCaml 3.12.1 and earlier computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
CVE-2011-4119 1 Inria 1 Caml-light 2021-10-29 9.8 Critical
caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.