
CVE-1999-1102
https://notcve.org/view.php?id=CVE-1999-1102
31 Dec 1999 — lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times. • http://ciac.llnl.gov/ciac/bulletins/e-25.shtml •

CVE-1999-1584
https://notcve.org/view.php?id=CVE-1999-1584
31 Dec 1999 — Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586. • http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1 •

CVE-1999-1585
https://notcve.org/view.php?id=CVE-1999-1585
31 Dec 1999 — The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges. • http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1 •

CVE-1999-1586
https://notcve.org/view.php?id=CVE-1999-1586
31 Dec 1999 — loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584. • http://www.cert.org/advisories/CA-1995-12.html •

CVE-1999-1592
https://notcve.org/view.php?id=CVE-1999-1592
31 Dec 1999 — Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact. NOTE: this might overlap CVE-1999-0129. • http://sunsolve.sun.com/search/document.do?assetkey=1-22-00159-1 •

CVE-1999-0977 – Solaris 2.5/2.5.1/2.6/7.0 - 'sadmind' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0977
10 Dec 1999 — Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request. • https://www.exploit-db.com/exploits/19668 •

CVE-1999-0974
https://notcve.org/view.php?id=CVE-1999-0974
09 Dec 1999 — Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/190 •

CVE-1999-0973 – Solaris 2.3/2.4/2.5/2.5.1/2.6/7.0 snoop - 'print_domain_name' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0973
07 Dec 1999 — Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode. • https://www.exploit-db.com/exploits/19663 •

CVE-1999-0860 – Solaris 7.0 - 'chkperm' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0860
01 Dec 1999 — Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack. • https://www.exploit-db.com/exploits/19235 •

CVE-1999-0859 – SunOS 4.1.4 - arp(8c) Memory Dump
https://notcve.org/view.php?id=CVE-1999-0859
01 Dec 1999 — Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly. • https://www.exploit-db.com/exploits/19232 •