
CVE-1999-0017
https://notcve.org/view.php?id=CVE-1999-0017
10 Dec 1997 — FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0017 •

CVE-1999-0018 – IBM AIX 3.2/4.1 / SCO Unixware 7.1.1 / SGI IRIX 5.3 / Sun Solaris 2.5.1 - Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0018
05 Dec 1997 — Buffer overflow in statd allows root privileges. • https://www.exploit-db.com/exploits/19104 •

CVE-1999-0097
https://notcve.org/view.php?id=CVE-1999-0097
29 Oct 1997 — The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character). • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0097 •

CVE-1999-0115 – AIX 3.x - bugfiler Arbitrary File Creation
https://notcve.org/view.php?id=CVE-1999-0115
01 Sep 1997 — AIX bugfiler program allows local users to gain root access. • https://www.exploit-db.com/exploits/20290 •

CVE-1999-0111
https://notcve.org/view.php?id=CVE-1999-0111
01 Jul 1997 — RIP v1 is susceptible to spoofing. • https://www.cve.org/CVERecord?id=CVE-1999-0111 •

CVE-1999-0064 – AIX lquerylv - Local Buffer Overflow / Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0064
26 May 1997 — Buffer overflow in AIX lquerylv program gives root access to local users. • https://www.exploit-db.com/exploits/335 •

CVE-1999-0040 – LibXt - 'XtAppInitialize()' Local Overflow *xterm
https://notcve.org/view.php?id=CVE-1999-0040
01 May 1997 — Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. • https://www.exploit-db.com/exploits/331 •

CVE-1999-0038 – BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - '/usr/bin/X11/xlock' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0038
26 Apr 1997 — Buffer overflow in xlock program allows local users to execute commands as root. • https://www.exploit-db.com/exploits/19173 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-1999-0046 – BSD/OS 2.1 / DG/UX 4.0 / Debian 0.93 / Digital UNIX 4.0 B / FreeBSD 2.1.5 / HP-UX 10.34 / IBM AIX 4.1.5 / NetBSD 1.0/1.1 / NeXTstep 4.0 / SGI IRIX 6.3 / SunOS 4.1.4 - 'rlogin' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0046
06 Feb 1997 — Buffer overflow of rlogin program using TERM environmental variable. • https://www.exploit-db.com/exploits/19203 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-1999-0048
https://notcve.org/view.php?id=CVE-1999-0048
27 Jan 1997 — Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/147 •