CVE-2000-1169
https://notcve.org/view.php?id=CVE-2000-1169
OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent. • http://archives.neohapsis.com/archives/bugtraq/2000-11/0195.html http://archives.neohapsis.com/archives/bugtraq/2000-11/0217.html http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000345 http://lists.suse.com/archives/suse-security-announce/2000-Nov/0004.html http://www.debian.org/security/2000/20001118 http://www.linux-mandrake.com/en/security/MDKSA-2000-068.php3 http://www.osvdb.org/2114 http://www.osvdb.org/6248 http://www.redhat.com/support/errata/RHSA-2000 •
CVE-2000-0994 – OpenBSD 2.x - 'fstat' Format String
https://notcve.org/view.php?id=CVE-2000-0994
Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable. • https://www.exploit-db.com/exploits/20256 ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch http://marc.info/?l=bugtraq&m=97068555106135&w=2 http://www.securityfocus.com/bid/1746 https://exchange.xforce.ibmcloud.com/vulnerabilities/5338 •
CVE-2000-0962
https://notcve.org/view.php?id=CVE-2000-0962
The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service. • http://archives.neohapsis.com/archives/bugtraq/2000-09/0299.html http://www.osvdb.org/1574 http://www.securityfocus.com/bid/1723 https://exchange.xforce.ibmcloud.com/vulnerabilities/5634 •
CVE-2000-0995
https://notcve.org/view.php?id=CVE-2000-0995
Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name. • ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch http://www.osvdb.org/6125 https://exchange.xforce.ibmcloud.com/vulnerabilities/5635 •
CVE-2000-0993 – BSD chpass - 'pw_error' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-2000-0993
Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd. • https://www.exploit-db.com/exploits/243 ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:58.chpass.asc ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-015.txt.asc http://marc.info/?l=bugtraq&m=97068555106135&w=2 http://www.openbsd.org/errata27.html#pw_error http://www.securityfocus.com/bid/1744 https://exchange.xforce.ibmcloud.com/vulnerabilities/5339 •