PT-2025-18914 · Obfstr · Obfstr

Published

2025-05-02

·

Updated

2025-05-03

·

CVE-2024-58253

CVSS v3.1

2.9

Low

VectorAV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions obfstr crate versions prior to 0.4.4
Description The issue arises from the obfstr! argument type not being restricted to string slices, resulting in invalid UTF-8 conversion that produces an invalid value.
Recommendations For versions prior to 0.4.4, update to version 0.4.4 or later to resolve the issue.

Fix

Type Confusion

Weakness Enumeration

Related Identifiers

CVE-2024-58253
GHSA-V2P5-Q653-9J99

Affected Products

Obfstr