Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Potential information disclosure by the message server, SAP security note 1525328

SAP Note 1525328
SAP Security Note
High priority

SAP security note 1525328, “Potential information disclosure by the message server”, is a program error note released on February 14, 2011. Below are the symptom, SAP recommended solution and the affected software components.

ComponentBasis Components > Client/Server Technology > Message Service
CategoryProgram error
PriorityHigh priority
TypeSAP Security Note
Version3
StatusReleased for Customer
Released onFebruary 14, 2011
LanguageEnglish

Description

Symptom

A malicious user can discover information relating to the SAP message server. This information could be used to allow malicious users to specialize their attacks against the SAP message server and thus an SAP system.

Solution

Please install a newer kernel patch. This disclosure is not present with the following or higher kernel patch levels:

  • 6.40: 321
  • 7.00: 246
  • 7.01: 83
  • 7.10: 190
  • 7.11: 77
  • 7.20: 33

Reason and prerequisites

Information such as the SAP release information, OS release information, SAP AS cluster statistics data, and message server related configuration parameters can be discovered through use of the message server.

References

This note refers to

  • SAP Note 1552929: Collective Security Note for known VulnDisco Vulnerabilities
  • SAP Note 888889: Automatic checks for security notes using RSECNOTE (outdated)

Referenced by

  • SAP Note 888889: Automatic checks for security notes using RSECNOTE (outdated)

Affected components

  • KRNL32NUC 6.40 to 6.40EX2
  • KRNL32NUC 7.00 to 7.01
  • KRNL32NUC 7.10 to 7.20
  • KRNL32NUC 7.20EXT to 7.20EXT
  • KRNL32UC 6.40 to 6.40EX2
  • KRNL32UC 7.00 to 7.01
  • KRNL32UC 7.10 to 7.20
  • KRNL32UC 7.20EXT to 7.20EXT
  • KRNL64NUC 6.40 to 6.40EX2
  • KRNL64NUC 7.00 to 7.01
  • KRNL64NUC 7.10 to 7.20
  • KRNL64NUC 7.20EXT to 7.20EXT
  • KRNL64UC 6.40 to 6.40EX2
  • KRNL64UC 7.00 to 7.01
  • KRNL64UC 7.10 to 7.20
  • KRNL64UC 7.2L to 7.2L
  • KRNL64UC 7.20EXT to 7.20EXT
  • KERNEL 6.40 to 6.40
  • KERNEL 7.00 to 7.01
  • KERNEL 7.10 to 7.11
  • KERNEL 7.20 to 7.20
  • KERNEL 7.2L to 7.2L

Full note on SAP: SAP Support Launchpad note 1525328

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More