CVE-2012-3133
Summary
| CVE | CVE-2012-3133 |
|---|---|
| State | PUBLISHED |
| Assigner | oracle |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2012-12-21 05:46:15 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:M/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Essbase Server | 11.1.2.1 | All | All | All |
| Application | Oracle | Essbase Server | 11.1.2.2 | All | All | All |
| Application | Oracle | Hyperion Interactive Reporting | 11.1.2.1 | All | All | All |
| Application | Oracle | Hyperion Interactive Reporting | 11.1.2.2 | All | All | All |
| Application | Oracle | Hyperion Production Reporting Server | 11.1.2.1 | All | All | All |
| Application | Oracle | Hyperion Production Reporting Server | 11.1.2.2 | All | All | All |
| Application | Oracle | Integration Services Server | 11.1.2.1 | All | All | All |
| Application | Oracle | Integration Services Server | 11.1.2.2 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2012-3133 Buffer Overflow in DataDirect ODBC driver affects Hyperion Interactive Reporting, Hyperion Production Reporting Server, Hyperion Essbase Server, Hyperion Integration Services Server (Third Party Vulnerability Resolution Blog) | af854a3a-2127-422b-91ae-364da2661108 | blogs.oracle.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.