SAP Security Note
High priority
SAP security note 1525328, “Potential information disclosure by the message server”, is a program error note released on February 14, 2011. Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
A malicious user can discover information relating to the SAP message server. This information could be used to allow malicious users to specialize their attacks against the SAP message server and thus an SAP system.
Solution
Please install a newer kernel patch. This disclosure is not present with the following or higher kernel patch levels:
- 6.40: 321
- 7.00: 246
- 7.01: 83
- 7.10: 190
- 7.11: 77
- 7.20: 33
Reason and prerequisites
Information such as the SAP release information, OS release information, SAP AS cluster statistics data, and message server related configuration parameters can be discovered through use of the message server.
References
This note refers to
- SAP Note 1552929: Collective Security Note for known VulnDisco Vulnerabilities
- SAP Note 888889: Automatic checks for security notes using RSECNOTE (outdated)
Referenced by
- SAP Note 888889: Automatic checks for security notes using RSECNOTE (outdated)
Affected components
- KRNL32NUC 6.40 to 6.40EX2
- KRNL32NUC 7.00 to 7.01
- KRNL32NUC 7.10 to 7.20
- KRNL32NUC 7.20EXT to 7.20EXT
- KRNL32UC 6.40 to 6.40EX2
- KRNL32UC 7.00 to 7.01
- KRNL32UC 7.10 to 7.20
- KRNL32UC 7.20EXT to 7.20EXT
- KRNL64NUC 6.40 to 6.40EX2
- KRNL64NUC 7.00 to 7.01
- KRNL64NUC 7.10 to 7.20
- KRNL64NUC 7.20EXT to 7.20EXT
- KRNL64UC 6.40 to 6.40EX2
- KRNL64UC 7.00 to 7.01
- KRNL64UC 7.10 to 7.20
- KRNL64UC 7.2L to 7.2L
- KRNL64UC 7.20EXT to 7.20EXT
- KERNEL 6.40 to 6.40
- KERNEL 7.00 to 7.01
- KERNEL 7.10 to 7.11
- KERNEL 7.20 to 7.20
- KERNEL 7.2L to 7.2L
Full note on SAP: SAP Support Launchpad note 1525328
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
