SAP security note 2829681, "[CVE-2019-0357] Privilege escalation in SAP HANA database". Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
The administrator of SAP HANA database can misuse HANA to execute commands with operating system "root" privileges.
Solution
The issue has been fixed in the following revisions. Updating to these or later versions is recommended:
- SAP HANA 1.00 SPS12: Revision 122.26
- SAP HANA 2.0 SPS03: Revision 37.03
- SAP HANA 2.0 SPS04: Revision 42
Reason and prerequisites
A race condition in SAP HANA database can be exploited to escalate privileges. The issue can only be exploited by the operating system user <sid>adm (user group sapsys) with shell access to the database server.
CVSS
Score 6.4 Vector: CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected components
- SAP HANA DATABASE 1.00: Version 1.00
- SAP HANA DATABASE 2.00: Version 2.00
Full note on SAP: SAP Support Launchpad note 2829681
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
