
CVE-1999-0189
https://notcve.org/view.php?id=CVE-1999-0189
04 Jun 1997 — Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/142 •

CVE-1999-1191 – Solaris 2.5.0/2.5.1 ps / chkey - Data Buffer
https://notcve.org/view.php?id=CVE-1999-1191
19 May 1997 — Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument. • https://www.exploit-db.com/exploits/332 •

CVE-1999-1402 – FreeBSD 3.1 / Solaris 2.6 - Domain Socket
https://notcve.org/view.php?id=CVE-1999-1402
17 May 1997 — The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket. • https://www.exploit-db.com/exploits/19346 •

CVE-1999-1158 – Solaris 2.4 passwd / yppasswd / nispasswd - Local Overflow
https://notcve.org/view.php?id=CVE-1999-1158
13 May 1997 — Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd. • https://www.exploit-db.com/exploits/341 •

CVE-1999-0040 – LibXt - 'XtAppInitialize()' Local Overflow *xterm
https://notcve.org/view.php?id=CVE-1999-0040
01 May 1997 — Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. • https://www.exploit-db.com/exploits/331 •

CVE-1999-0038 – BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - '/usr/bin/X11/xlock' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0038
26 Apr 1997 — Buffer overflow in xlock program allows local users to execute commands as root. • https://www.exploit-db.com/exploits/19173 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-1999-0315 – Solaris 2.4 - '/bin/fdformat' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0315
01 Apr 1997 — Buffer overflow in Solaris fdformat command gives root access to local users. • https://www.exploit-db.com/exploits/328 •

CVE-1999-0318
https://notcve.org/view.php?id=CVE-1999-0318
01 Mar 1997 — Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0318 •

CVE-1999-0109 – Solaris 2.5.1 - 'ffbconfig' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0109
10 Feb 1997 — Buffer overflow in ffbconfig in Solaris 2.5.1. • https://www.exploit-db.com/exploits/19159 •

CVE-1999-0046 – BSD/OS 2.1 / DG/UX 4.0 / Debian 0.93 / Digital UNIX 4.0 B / FreeBSD 2.1.5 / HP-UX 10.34 / IBM AIX 4.1.5 / NetBSD 1.0/1.1 / NeXTstep 4.0 / SGI IRIX 6.3 / SunOS 4.1.4 - 'rlogin' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0046
06 Feb 1997 — Buffer overflow of rlogin program using TERM environmental variable. • https://www.exploit-db.com/exploits/19203 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •