/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-p3ff-x8hj-4v9v

Published

Last updated

https://images.chainguard.dev/security/CGA-p3ff-x8hj-4v9v
Package

datadog-agent

RepositoryWolfi
Latest Update
Fixed
Fixed Version

7.63.1-r0

Aliases
  • CVE-2024-49750
  • GHSA-5vvg-pvhp-hv2m

Severity

5.5

Medium

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-49750

Updates

Status

Fixed

Fixed version

7.63.1-r0

Status

Pending upstream fix

Impact

Datadog/integrations-core requires the use of Python 3.11 however the latest release of snowflake-connector-python (version 3.12.3) does not include support for Python 3.11. Instead, this version is built for Python 3.12 (cp312). The absence of a compatible wheel for Python 3.11 (cp311) prevents us from upgrading to version 3.12.3. Support for Python 3.11 requires upstream maintainers to implement.

Status

Under investigation

Status

Fixed

Fixed version

7.59.0-r1

Status

Pending upstream fix

Impact

snowflake_connector_python 3.12.3 contains the fix, but that release is not yet available in the Datadog hosted Agent dependencies Python repository. See https://agent-int-packages.datadoghq.com/external/snowflake-connector-python/.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing