Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SNOW-1619390: Compatibility with cryptograph=43.0.0 #2020

Closed
flowconic opened this issue Aug 9, 2024 · 5 comments
Closed

SNOW-1619390: Compatibility with cryptograph=43.0.0 #2020

flowconic opened this issue Aug 9, 2024 · 5 comments
Assignees
Labels
feature status-fixed_awaiting_release The issue has been fixed, its PR merged, and now awaiting the next release cycle of the connector. triaged

Comments

@flowconic
Copy link

What is the current behavior?

snowflake-connector-python 3.12.0(latest version as of the creation of this issue) depends on cryptography<43.0.0

What is the desired behavior?

snowflake-connector-python 3.12.0 compatible with cryptography=43.0.0

How would this improve snowflake-connector-python?

Use latest patches and improvements and quickly able to address upcoming CVE security vulnerabilities.

References and other background

image

@github-actions github-actions bot changed the title Compatibility with cryptograph=43.0.0 SNOW-1619390: Compatibility with cryptograph=43.0.0 Aug 9, 2024
@sfc-gh-aling
Copy link
Collaborator

thanks for reaching out!

I have a PR out to unpin cryptography: #2021

@flowconic
Copy link
Author

thanks for reaching out!

I have a PR out to unpin cryptography: #2021

Amazing, thank you for jumping on this so quickly.

@sfc-gh-dszmolka sfc-gh-dszmolka added status-fixed_awaiting_release The issue has been fixed, its PR merged, and now awaiting the next release cycle of the connector. status-triage_done Initial triage done, will be further handled by the driver team triaged and removed needs triage status-triage_done Initial triage done, will be further handled by the driver team labels Aug 13, 2024
@sfc-gh-aling
Copy link
Collaborator

we have released v3.12.1 which unpins the cryptography dependency, please take a try!

@flowconic
Copy link
Author

we have released v3.12.1 which unpins the cryptography dependency, please take a try!

Thank you so much. We will do this week.
Really appreciate the quick resolution.

@irikeish
Copy link

irikeish commented Oct 9, 2024

@sfc-gh-aling Could you please update the release note about cryptography dependency? Thanks.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature status-fixed_awaiting_release The issue has been fixed, its PR merged, and now awaiting the next release cycle of the connector. triaged
Projects
None yet
Development

No branches or pull requests

4 participants