VYPR
Unrated severityNVD Advisory· Published Nov 4, 2014· Updated Jun 17, 2026

CVE-2014-8587

CVE-2014-8587

Description

SAPCRYPTOLIB before 5.555.38, SAPSECULIB, and CommonCryptoLib before 8.4.30, as used in SAP NetWeaver AS for ABAP and SAP HANA, allows remote attackers to spoof Digital Signature Algorithm (DSA) signatures via unspecified vectors.

Affected products

8
  • cpe:2.3:a:sap:commoncryptolib:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sap:commoncryptolib:*:*:*:*:*:*:*:*range: <=8.4.29
    • (no CPE)range: <8.4.30
  • cpe:2.3:a:sap:hana:-:*:*:*:*:*:*:*
  • cpe:2.3:a:sap:netweaver:*:*:*:*:*:*:*:*
  • SAP/Sapcryptolib2 versions
    cpe:2.3:a:sap:sapcryptolib:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sap:sapcryptolib:*:*:*:*:*:*:*:*range: <=5.555.37
    • (no CPE)range: <5.555.38
  • SAP/Sapseculib2 versions
    cpe:2.3:a:sap:sapseculib:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sap:sapseculib:-:*:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.