
CVE-1999-1402 – FreeBSD 3.1 / Solaris 2.6 - Domain Socket
https://notcve.org/view.php?id=CVE-1999-1402
17 May 1997 — The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket. • https://www.exploit-db.com/exploits/19346 •

CVE-1999-0165
https://notcve.org/view.php?id=CVE-1999-0165
01 Mar 1997 — NFS cache poisoning. • https://www.cve.org/CVERecord?id=CVE-1999-0165 •

CVE-1999-0217
https://notcve.org/view.php?id=CVE-1999-0217
01 Jan 1997 — Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0217 •

CVE-1999-1137
https://notcve.org/view.php?id=CVE-1999-1137
01 Oct 1993 — The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/122&type=0&nav=sec.sba •

CVE-1999-1318
https://notcve.org/view.php?id=CVE-1999-1318
17 Sep 1993 — /usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fpatches%2F100630&zone_32=112193%2A%20 •

CVE-1999-1142
https://notcve.org/view.php?id=CVE-1999-1142
27 May 1992 — SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/116 •

CVE-1999-1468
https://notcve.org/view.php?id=CVE-1999-1468
22 Oct 1991 — rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. • http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html •

CVE-1999-1123 – SunOS 4.1.1 - '/usr/release/bin/winstall' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-1123
20 May 1991 — The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall. • https://www.exploit-db.com/exploits/19043 •

CVE-1999-1212
https://notcve.org/view.php?id=CVE-1999-1212
27 Mar 1991 — Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges. • http://www.cert.org/advisories/CA-1991-02.html •

CVE-1999-1211
https://notcve.org/view.php?id=CVE-1999-1211
27 Mar 1991 — Vulnerability in in.telnetd in SunOS 4.1.1 and earlier allows local users to gain root privileges. • http://www.cert.org/advisories/CA-1991-02.html •