Download
| Alert*
CVE-1999-0023
Local user gains root privileges via buffer overflow in rdist, via lookup() function. CVE-1999-0033 Command execution in Sun systems via buffer overflow in the at program. CVE-1999-0134 vold in Solaris 2.x allows local users to gain root access. CVE-1999-0136 Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access. CVE-1999-0128 Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death. CVE-1999-0017 FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. CVE-2001-1076 Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable. CVE-2001-1328 Buffer overflow in ypbind daemon in Solaris 5.4 through 8 allows remote attackers to execute arbitrary code. CVE-2001-1503 The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list all accounts on a host by typing finger 'a b c d e f g h'@host. |