CVE-2026-35562
Allocation of resources without limits in the parsing components in Amazon Athena ODBC driver before 2.1.0.0 might allow a threat actor to cause a denial of service by delivering crafted input that triggers excessive resource consumption during the driver's parsing operations.
To remediate this issue, users should upgrade to version 2.1.0.0.
To remediate this issue, users should upgrade to version 2.1.0.0.
Vendor
-
Product
-
CWE
Yayın Tarihi
2026-04-03 21:17:12
Güncelleme
2026-04-03 21:17:12
Source Identifier
ff89ba41-3aa1-4d27-914a-91399e9639e5
KEV Date Added
-
Kategoriler
Referanslar
https://aws.amazon.com/security/security-bulletins/2026-013-aws/
https://docs.aws.amazon.com/athena/latest/ug/odbc-v2-driver-release-notes.html
https://downloads.athena.us-east-1.amazonaws.com/drivers/ODBC/v2.1.0.0/Linux/AmazonAthenaODBC-2.1.0.0.rpm
https://downloads.athena.us-east-1.amazonaws.com/drivers/ODBC/v2.1.0.0/Mac/Intel/AmazonAthenaODBC-2.1.0.0_x86.pkg
https://downloads.athena.us-east-1.amazonaws.com/drivers/ODBC/v2.1.0.0/Mac/arm/AmazonAthenaODBC-2.1.0.0_arm.pkg
https://downloads.athena.us-east-1.amazonaws.com/drivers/ODBC/v2.1.0.0/Windows/AmazonAthenaODBC-2.1.0.0.msi