Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Potential remote termination of running processes in BI-BIP, SAP security note 2001108

SAP Note 2001108SAP Security NoteHigh priority

SAP security note 2001108, "Potential remote termination of running processes in BI-BIP", is a program error note released on 21.05.2015. Below are the symptom and SAP recommended solution.

ComponentBusiness intelligence solutions > Business intelligence platform > Authentication, ActiveDirectory, LDAP, SSO, Vintela
CategoryProgram error
PriorityCorrection with high priority
TypeSAP Security Note
Version4
StatusReleased for Customer
Released on21.05.2015
LanguageEnglish

Description

Symptom

An attacker can remotely exploit servers in Business Intelligence Platform by manipulating the BIP process to read outside its memory space. A denial-of-service may occur.

Solution

Install the following support patches (or subsequent releases):

  • XI 3.1 SP6 FP5
  • XI 3.1 SP7 FP2
  • BI 4.0 Patch 9.1
  • BI 4.0 SP10
  • BI 4.1 SP04

Reason and prerequisites

The issue is caused by memory corruption that causes the BI Platform processes to terminate. An attacker can induce the condition when a process attempts to read outside its memory space. A memory protection fault will lead the system to terminate the process, thus rendering the application unusable until it is restarted manually.

CVSS

Score 5.0 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Full note on SAP: SAP Support Launchpad note 2001108

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More