Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2001-0170

Disclosure Date: March 26, 2001 (last updated February 22, 2025)
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
0
Attacker Value
Unknown

CVE-2000-1134

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown

CVE-2000-0844

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown

CVE-1999-0691

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
0
Attacker Value
Unknown

CVE-1999-0714

Disclosure Date: February 15, 1999 (last updated February 22, 2025)
Vulnerability in Compaq Tru64 UNIX edauth command.
0
Attacker Value
Unknown

CVE-1999-0358

Disclosure Date: February 01, 1999 (last updated February 22, 2025)
Digital Unix 4.0 has a buffer overflow in the inc program of the mh package.
0
Attacker Value
Unknown

CVE-1999-1458

Disclosure Date: January 25, 1999 (last updated February 22, 2025)
Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.
0