First published: Wed Nov 15 2023(Updated: )
The Gotham video-application-server service contained a race condition which would cause it to not apply certain acls new videos if the source system had not yet initialized.
Credit: cve-coordination@palantir.com
Affected Software | Affected Version | How to fix |
---|---|---|
Palantir Video-application-server | <2.206.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-30954 is low.
The vulnerability in CVE-2023-30954 is a race condition in the Gotham video-application-server service.
CVE-2023-30954 affects Palantir Video-application-server version up to 2.206.1.
The CWE of CVE-2023-30954 is CWE-362 and CWE-285.
Yes, you can find the reference for CVE-2023-30954 [here](https://palantir.safebase.us/?tcuUid=d2366a3e-a92c-476e-8a7a-7db60e4be567).