PT-2015-4299 · Sap · Sap Netweaver Dispatcher+1
Published
2015-01-15
·
Updated
2018-12-10
·
CVE-2014-9595
CVSS v2.0
6.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
SAP Kernel versions 7.00 32-bit and 7.40 64-bit
Description
The issue is related to a buffer overflow in the SAP NetWeaver Dispatcher, specifically in the Spool System. This can be exploited by remote authenticated users, potentially leading to a denial of service or the execution of arbitrary code.
Recommendations
For SAP Kernel version 7.00 32-bit, apply the fix as described in SAP Note 2061271 to resolve the issue.
For SAP Kernel version 7.40 64-bit, apply the fix as described in SAP Note 2061271 to resolve the issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sap Kernel
Sap Netweaver Dispatcher