
CVE-2000-0844 – Immunix OS 6.2 - LC glibc format string
https://notcve.org/view.php?id=CVE-2000-0844
14 Nov 2000 — Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2000-0441
https://notcve.org/view.php?id=CVE-2000-0441
24 May 2000 — Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems. • http://archives.neohapsis.com/archives/bugtraq/2000-05/0275.html •

CVE-1999-1117 – IBM AIX 4.2.1 - 'lquerypv' File Read
https://notcve.org/view.php?id=CVE-1999-1117
31 Dec 1999 — lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter. • https://www.exploit-db.com/exploits/19345 •

CVE-1999-0687
https://notcve.org/view.php?id=CVE-1999-0687
13 Sep 1999 — The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192 •

CVE-1999-0691 – DIGITAL UNIX 4.0 d/e/f / AIX 4.3.2 / CDE 2.1 / IRIX 6.5.14 / Solaris 7.0 - Local Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0691
13 Sep 1999 — Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name. • https://www.exploit-db.com/exploits/19497 •

CVE-1999-1079
https://notcve.org/view.php?id=CVE-1999-1079
06 May 1999 — Vulnerability in ptrace in AIX 4.3 allows local users to gain privileges by attaching to a setgid program. • http://marc.info/?l=bugtraq&m=92601792420088&w=2 •

CVE-1999-1405 – IBM AIX 4.2.1 - 'snap' Insecure Temporary File Creation
https://notcve.org/view.php?id=CVE-1999-1405
17 Feb 1999 — snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a. • https://www.exploit-db.com/exploits/19300 •

CVE-1999-0118 – IBM AIX 4.3 - 'infod' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0118
01 Nov 1998 — AIX infod allows local users to gain root access through an X display. • https://www.exploit-db.com/exploits/19287 •

CVE-1999-0009 – ISC BIND (Linux/BSD) - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0009
08 Apr 1998 — Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. • https://www.exploit-db.com/exploits/19111 •

CVE-1999-0010
https://notcve.org/view.php?id=CVE-1999-0010
08 Apr 1998 — Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages. • ftp://patches.sgi.com/support/free/security/advisories/19980603-01-PX •