SAP security note 1741793, “Potential remote termination of running work processes”. Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
An attacker can remotely exploit a single work process of an SAP application server ABAP to terminate it manually. In the worst case, this could lead to remote code execution, granting complete control of the server.
Solution
Apply the Kernel patches listed in this note to mitigate the vulnerability.
CVSS
Score 10.0 Vector: AV:N/AC:L/AU:N/C:C/I:C/A:C
References
Affected components
- KRNL32NUC, KRNL32UC, KRNL64NUC, KRNL64UC (Various Versions)
- KERNEL (7.20 to 7.21)
Full note on SAP: SAP Support Launchpad note 1741793
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
