Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

CVE-2019-0357 Privilege escalation in SAP HANA database, SAP security note 2829681

SAP Note 2829681

SAP security note 2829681, "[CVE-2019-0357] Privilege escalation in SAP HANA database". Below are the symptom, SAP recommended solution and the affected software components.

Description

Symptom

The administrator of SAP HANA database can misuse HANA to execute commands with operating system "root" privileges.

Solution

The issue has been fixed in the following revisions. Updating to these or later versions is recommended:

  • SAP HANA 1.00 SPS12: Revision 122.26
  • SAP HANA 2.0 SPS03: Revision 37.03
  • SAP HANA 2.0 SPS04: Revision 42

Reason and prerequisites

A race condition in SAP HANA database can be exploited to escalate privileges. The issue can only be exploited by the operating system user <sid>adm (user group sapsys) with shell access to the database server.

CVSS

Score 6.4 Vector: CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected components

  • SAP HANA DATABASE 1.00: Version 1.00
  • SAP HANA DATABASE 2.00: Version 2.00

Full note on SAP: SAP Support Launchpad note 2829681

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More