Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
What Y Combinator’s Latest Batch Reveals About The Future

What Y Combinator’s Latest Batch Reveals About The Future

4 June 2026
American Airlines is suspending some summer routes thanks to the cost of jet fuel

American Airlines is suspending some summer routes thanks to the cost of jet fuel

4 June 2026
Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

4 June 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » Amazon Security Warning As 3 High-Rated Vulnerabilities Hit Cloud
Innovation

Amazon Security Warning As 3 High-Rated Vulnerabilities Hit Cloud

Press RoomBy Press Room26 December 20243 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
Amazon Security Warning As 3 High-Rated Vulnerabilities Hit Cloud

Amazon has confirmed that three high-severity security vulnerabilities that could allow for privilege escalation and all the implications that this can bring for potential data compromise have been identified and fixed. Here’s what you need to know about the SQL injection issues across a number of Amazon Redshift drivers: CVE-2024-12744, CVE-2024-12745 and CVE-2024-12746

What Is Amazon Redshift?

Amazon Redshift is part of the Amazon Web Services cloud-computing platform, a data warehousing solution to process large-scale datasets and database migrations and allow as much as 16 petabytes of data on a single cluster. Amazon said that Amazon Redshift can enable near real-time analytics without building complex data pipelines, bringing the ability to “analyze petabytes of data without the burden of infrastructure management.” It is the powerful SQL analytic capabilities of Amazon Redshift when used with SageMaker Lakehouse that attracts tens of thousands of customers. And hackers.

Amazon Redshift SQL Injection Vulnerabilites CVE-2024-12744, CVE-2024-12745, And CVE-2024-12746 Explained

In a Dec. 24 security bulletin, Amazon Web Services said that it had identified high-severity issues within the Amazon Redshift Java Database Connectivity Driver, Amazon Redshift Python Connector, and Amazon Redshift Open Database Connectivity Driver. The vulnerabilities, all of which get an official rating of 8, impact Amazon Redshift JDBC Driver, version 2.1.0.31; Amazon Redshift Python Connector, version 2.1.4; Amazon Redshift ODBC Driver, version v2.1.5.0.

CVE-2024-12744 is a SQL injection issue in the RedShift JDBC Driver which could allow an attacker to gain escalated privileges. “We recommend customers upgrade to the driver version 2.1.0.32,” Amazon said, “or revert to driver version 2.1.0.30.”

CVE-2024-12745 is another SQL injection issue, this time in the Redshift Python Connector, whereby an SQL command using externally influenced input from an upstream component doesn’t neutralize, or does so incorrectly, elements that could modify the intended command. “This issue has been addressed in driver version 2.1.5,” Amazon said, “we recommend customers upgrade to the driver version 2.1.5 or revert to driver version 2.1.3.”

CVE-2024-12746 impacts the Redshift ODBC Driver v2.1.5.0 and allows privilege escalation by way of an SQL injection issues when utilizing the SQLTables or SQLColumns Metadata APIs. “This issue has been addressed in driver version 2.1.6.0,” Amazon said, “we recommend customers upgrade to the driver version 2.1.6.0 or revert to driver version 2.1.4.0.”

Amazon said that the fixes were all made available on Dec. 23 and recommended all customers upgrade to the latest version to address the security vulnerabilities as soon as possible. I have reached out to Amazon for a statement.

Amazon Redshift Amazon Security Amazon Security Warning Amazon Web Services AWS AWS Security CVE-2024-12744 CVE-2024-12745 CVE-2024-12746 SQL injection
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

What Y Combinator’s Latest Batch Reveals About The Future

What Y Combinator’s Latest Batch Reveals About The Future

4 June 2026
Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

4 June 2026
AI-Native Transformation: Escaping The Modernization Trap

AI-Native Transformation: Escaping The Modernization Trap

4 June 2026
What Travel Marketers Need To Know Now

What Travel Marketers Need To Know Now

4 June 2026
This Jellyfish Has 24 Eyes — A Biologist Explains What It Actually Sees With Them

This Jellyfish Has 24 Eyes — A Biologist Explains What It Actually Sees With Them

4 June 2026
Why Continuous Security Validation Matters More Than Ever

Why Continuous Security Validation Matters More Than Ever

4 June 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Exclusive: DeFi platform Azura launches after raising .9 million from Initialized

Exclusive: DeFi platform Azura launches after raising $6.9 million from Initialized

22 October 2024
Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

22 October 2024
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
AI-Native Transformation: Escaping The Modernization Trap

AI-Native Transformation: Escaping The Modernization Trap

4 June 20260 Views
Amazon and Google have billions riding on Anthropic. The IPO will finally reveal how much.

Amazon and Google have billions riding on Anthropic. The IPO will finally reveal how much.

4 June 20261 Views
What Travel Marketers Need To Know Now

What Travel Marketers Need To Know Now

4 June 20260 Views
Why SpaceX is breaking the IPO playbook with a  billion fixed-price offering

Why SpaceX is breaking the IPO playbook with a $75 billion fixed-price offering

4 June 20262 Views

Recent Posts

  • What Y Combinator’s Latest Batch Reveals About The Future
  • American Airlines is suspending some summer routes thanks to the cost of jet fuel
  • Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend
  • Europe wants more control over global AI services. America is warning them to take care—and history is on their side
  • AI-Native Transformation: Escaping The Modernization Trap

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
What Y Combinator’s Latest Batch Reveals About The Future

What Y Combinator’s Latest Batch Reveals About The Future

4 June 2026
American Airlines is suspending some summer routes thanks to the cost of jet fuel

American Airlines is suspending some summer routes thanks to the cost of jet fuel

4 June 2026
Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

Apple’s ‘Widow’s Bay’ Lands An Endorsement From A Horror Legend

4 June 2026
Most Popular
Europe wants more control over global AI services. America is warning them to take care—and history is on their side

Europe wants more control over global AI services. America is warning them to take care—and history is on their side

4 June 20260 Views
AI-Native Transformation: Escaping The Modernization Trap

AI-Native Transformation: Escaping The Modernization Trap

4 June 20260 Views
Amazon and Google have billions riding on Anthropic. The IPO will finally reveal how much.

Amazon and Google have billions riding on Anthropic. The IPO will finally reveal how much.

4 June 20261 Views

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.