MEDIUM · 6.8

CVE-2012-3133

Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11...

Vulnerability Description

Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
OracleHyperion Interactive Reporting11.1.2.1
OracleEssbase Server11.1.2.1
OracleHyperion Production Reporting Server11.1.2.1
OracleIntegration Services Server11.1.2.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2012-3133?

CVE-2012-3133 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11...

How severe is CVE-2012-3133?

CVE-2012-3133 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-3133?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Hyperion Interactive Reporting, Oracle Essbase Server, Oracle Hyperion Production Reporting Server, Oracle Integration Services Server.