
CVE-2002-0004 – AT 3.1.8 - Formatted Time Heap Overflow
https://notcve.org/view.php?id=CVE-2002-0004
27 Feb 2002 — Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice. Corrupción de memoria en el comando "at" permite que usuarios locales ejecuten código arbitrario haciendo uso de un tiempo de ejecución mal escrito (lo que provoca que at libere la misma memoria dos veces). • https://www.exploit-db.com/exploits/21229 •

CVE-2001-1185 – FreeBSD 4.4 - AIO Library Cross Process Memory Write
https://notcve.org/view.php?id=CVE-2001-1185
10 Dec 2001 — Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges. Algunas operaciones AIO en FreeBSD 4.4 podrían ser retrasadas hasta la llamada a execve, lo cual, podría permitir a usuarios locales la sobreescritura en memorioa de nuevos procesos y la obtención de privilegios. • https://www.exploit-db.com/exploits/21176 •

CVE-2001-1034
https://notcve.org/view.php?id=CVE-2001-1034
23 Sep 2001 — Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter. • http://www.securityfocus.com/archive/1/215984 •

CVE-2001-1029 – FreeBSD 4.3/4.4 - Login Capabilities Privileged File Reading
https://notcve.org/view.php?id=CVE-2001-1029
20 Sep 2001 — libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying alternate copyright or welcome files. • https://www.exploit-db.com/exploits/21114 •

CVE-2000-1011
https://notcve.org/view.php?id=CVE-2000-1011
11 Dec 2000 — Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc •

CVE-2000-1012
https://notcve.org/view.php?id=CVE-2000-1012
29 Nov 2000 — The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc •

CVE-2000-1013
https://notcve.org/view.php?id=CVE-2000-1013
29 Nov 2000 — The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc •

CVE-2000-0852
https://notcve.org/view.php?id=CVE-2000-0852
14 Nov 2000 — Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges. • http://archives.neohapsis.com/archives/freebsd/2000-09/0110.html •

CVE-2000-0749
https://notcve.org/view.php?id=CVE-2000-0749
20 Oct 2000 — Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system. • http://archives.neohapsis.com/archives/freebsd/2000-08/0338.html •

CVE-2000-0729
https://notcve.org/view.php?id=CVE-2000-0729
20 Oct 2000 — FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header. • http://archives.neohapsis.com/archives/freebsd/2000-08/0337.html •