libsnowflakeclient is the Snowflake Connector for C/C++. Versions starting from 0.5.0 to before 2.2.0, incorrectly treat malformed requests that caused the HTTP response status code 400, as able to be retried. This could hang the application until SF_CON_MAX_RETRY requests were sent. This issue has been patched in version 2.2.0.
History

Tue, 29 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Apr 2025 04:45:00 +0000

Type Values Removed Values Added
Description libsnowflakeclient is the Snowflake Connector for C/C++. Versions starting from 0.5.0 to before 2.2.0, incorrectly treat malformed requests that caused the HTTP response status code 400, as able to be retried. This could hang the application until SF_CON_MAX_RETRY requests were sent. This issue has been patched in version 2.2.0.
Title Snowflake Connector for C/C++ retries malformed requests
Weaknesses CWE-573
References
Metrics cvssV3_1

{'score': 3.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2025-04-29T04:34:37.061Z

Updated: 2025-04-29T13:40:22.200Z

Reserved: 2025-04-22T22:41:54.911Z

Link: CVE-2025-46330

cve-icon Vulnrichment

Updated: 2025-04-29T13:40:17.288Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-04-29T05:15:46.817

Modified: 2025-04-29T13:52:10.697

Link: CVE-2025-46330

cve-icon Redhat

No data.