CVE-2014-8587 Information

Description

SAPCRYPTOLIB before 5.555.38 SAPSECULIB and CommonCryptoLib before 8.4.30 as used in SAP NetWeaver AS for ABAP and SAP HANA allows remote attackers to spoof Digital Signature Algorithm (DSA) signatures via unspecified vectors.

Reference

http://blog.onapsis.com/sap-security-note-2067859-potential-exposure-to-digital-signature-spoofing/ http://secunia.com/advisories/57606 http://service.sap.com/sap/support/notes/2067859 https://twitter.com/SAP_Gsupport/status/522401681997570048

Share on: