Memory Corruption in SAP NetWeaver Application Server ABAP BIC Document
CVE-2025-42976
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 12 August 2025
What is CVE-2025-42976?
The SAP NetWeaver Application Server ABAP (BIC Document) contains a vulnerability that allows an authenticated attacker to send specially crafted requests to the application. This could lead to memory corruption, causing the affected component to crash and may result in service disruptions. Furthermore, an attacker might exploit this vulnerability to perform out-of-bounds read operations, potentially disclosing sensitive information that resides in memory at the time of exploitation. It's crucial for users to take preventive actions to safeguard their systems.
Affected Version(s)
SAP NetWeaver Application Server ABAP (BIC Document) S4COREOP 104
SAP NetWeaver Application Server ABAP (BIC Document) 105
SAP NetWeaver Application Server ABAP (BIC Document) 106