Vulnerability Description
In group_number in the scsir crate 0.2.0 for Rust, there can be an overflow because a hardware device may expect a small number of bits (e.g., 5 bits) for group number.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Crates | Scsir | 0.2.0 |
Related Weaknesses (CWE)
References
- https://crates.io/crates/scsirProduct
- https://github.com/maboroshinokiseki/scsir/issues/4ExploitIssue Tracking
FAQ
What is CVE-2025-48756?
CVE-2025-48756 is a vulnerability with a CVSS score of 2.9 (LOW). In group_number in the scsir crate 0.2.0 for Rust, there can be an overflow because a hardware device may expect a small number of bits (e.g., 5 bits) for group number.
How severe is CVE-2025-48756?
CVE-2025-48756 has been rated LOW with a CVSS base score of 2.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-48756?
Check the references section above for vendor advisories and patch information. Affected products include: Crates Scsir.