Asymmetric denial of service - ReDoS In snowflake-connector-python
Description
snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS) An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI package, when an attacker is able to supply arbitrary input to the get_file_transfer_type method.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | 2.8.2 |
Aliases
1. 2. 3. 4.
References
1. 2. 3. 4.