
CVE-2001-0112 – splitvt < 1.6.5 - Local Overflow
https://notcve.org/view.php?id=CVE-2001-0112
14 Feb 2001 — Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands. • https://www.exploit-db.com/exploits/260 •

CVE-2001-0131
https://notcve.org/view.php?id=CVE-2001-0131
14 Feb 2001 — htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack. • http://marc.info/?l=bugtraq&m=97916374410647&w=2 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVE-2001-0069
https://notcve.org/view.php?id=CVE-2001-0069
12 Feb 2001 — dialog before 0.9a-20000118-3bis in Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack. • http://www.debian.org/security/2000/20001225 •

CVE-2000-1135
https://notcve.org/view.php?id=CVE-2000-1135
09 Jan 2001 — fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack. • http://www.debian.org/security/2000/20001130 •

CVE-2000-0888
https://notcve.org/view.php?id=CVE-2000-0888
19 Dec 2000 — named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug." • http://archives.neohapsis.com/archives/linux/suse/2000-q4/0657.html •

CVE-2000-0844 – Immunix OS 6.2 - LC glibc format string
https://notcve.org/view.php?id=CVE-2000-0844
14 Nov 2000 — Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2000-0867
https://notcve.org/view.php?id=CVE-2000-0867
14 Nov 2000 — Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages. • ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt •

CVE-2000-0666 – Conectiva 4.x/5.x / Debian 2.x / RedHat 6.x / S.u.S.E 6.x/7.0 / Trustix 1.x - rpc.statd Remote Format String
https://notcve.org/view.php?id=CVE-2000-0666
16 Jul 2000 — rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges. • https://www.exploit-db.com/exploits/20075 •

CVE-2000-0584 – Canna Canna 3.5 b2 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0584
02 Jul 2000 — Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name. • https://www.exploit-db.com/exploits/20061 •

CVE-2000-0606
https://notcve.org/view.php?id=CVE-2000-0606
21 Jun 2000 — Buffer overflow in kon program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via a long -StartupMessage parameter. • http://www.securityfocus.com/bid/1371 •