CVE-2022-27897
16.02.2023, 16:15
Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would load portions of maliciously crafted zip files to memory. An attacker could repeatedly upload a malicious zip file, which would allow them to exhaust memory resources on the dispatch server.Enginsight
Vendor | Product | Version |
---|---|---|
palantir | gotham | 𝑥 < 3.22.11.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration