CVE-2024-43382
MediumVulnerability Description
Snowflake JDBC driver versions >= 3.2.6 and <= 3.19.1 have an Incorrect Security Setting that can result in data being uploaded to an encrypted stage without the additional layer of protection provided by client side encryption.
CVSS Metrics
Common Vulnerability Scoring System
Vector String:
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
Known Affected Software
113 configuration(s) from 1 vendor(s)
cpe:2.3:a:snowflake:snowflake_jdbc:3.10.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.22:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.4.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.4:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.27:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.3.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.8:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.30:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.4:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.13:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.9:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.17:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.21:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.7:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.10.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.9:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.12:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.2.7:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.21:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.10.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.11:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.8:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.8:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.13:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.28:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.7.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.14:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.6:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.10.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.4.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.29:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.5:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.7:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.28:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.3.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.7:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.3.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.26:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.24:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.7.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.20:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.11:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.25:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.27:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.14:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.5.4:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.16:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.6:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.17:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.25:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.10:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.14:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.23:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.11:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.16:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.16:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.9.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.15:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.5.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.5.5:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.5:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.26:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.15:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.20:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.23:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.7:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.15:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.4:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.9.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.8:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.8.5:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.12:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.19:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.9:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.19:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.5:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.18:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.4.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.10:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.13:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.12:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.6:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.10:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.17:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.18:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.13.4:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.12.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.7.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.6:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.24:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.9.2:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.11.0:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.6.3:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.2.6:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.11.1:*:*:*:*:*:*:*
cpe:2.3:a:snowflake:snowflake_jdbc:3.3.1:*:*:*:*:*:*:*
CPUJAN2025
Oracle Critical Patch Update Advisory - January 2025
Severity Details
Weakness Type (CWE)
Inadequate Encryption Strength
- Description
- The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
- Typical Severity
- Medium
- Abstraction Level
- Class
Key Information
- Published Date
- October 30, 2024
