
CVE-2001-0178
https://notcve.org/view.php?id=CVE-2001-0178
26 Mar 2001 — kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges. • http://www.calderasystems.com/support/security/advisories/CSSA-2001-005.0.txt •

CVE-2001-0109 – SuSE 6.x/7.0 - MkDir Error Handling rctab Race Condition
https://notcve.org/view.php?id=CVE-2001-0109
12 Mar 2001 — rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file. • https://www.exploit-db.com/exploits/20554 •

CVE-2000-1095 – Linux modutils 2.3.9 - 'modprobe' Arbitrary Command Execution
https://notcve.org/view.php?id=CVE-2000-1095
09 Jan 2001 — modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters. • https://www.exploit-db.com/exploits/20402 •

CVE-2000-1107
https://notcve.org/view.php?id=CVE-2000-1107
09 Jan 2001 — in.identd ident server in SuSE Linux 6.x and 7.0 allows remote attackers to cause a denial of service via a long request, which causes the server to access a NULL pointer and crash. • http://archives.neohapsis.com/archives/bugtraq/2000-11/0387.html •

CVE-2000-1016 – SuSE Linux 6.3/6.4 - Installed Package Disclosure
https://notcve.org/view.php?id=CVE-2000-1016
11 Dec 2000 — The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL. • https://www.exploit-db.com/exploits/20236 •

CVE-2000-1040
https://notcve.org/view.php?id=CVE-2000-1040
11 Dec 2000 — Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service. • http://archives.neohapsis.com/archives/bugtraq/2000-10/0356.html •

CVE-2000-1044
https://notcve.org/view.php?id=CVE-2000-1044
11 Dec 2000 — Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges. • http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html •

CVE-2000-0844 – Immunix OS 6.2 - LC glibc format string
https://notcve.org/view.php?id=CVE-2000-0844
14 Nov 2000 — Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2000-0868
https://notcve.org/view.php?id=CVE-2000-0868
14 Nov 2000 — The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/. • http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html •

CVE-2000-0869 – Apache 1.3.12 - WebDAV Directory Listings
https://notcve.org/view.php?id=CVE-2000-0869
14 Nov 2000 — The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method. • https://www.exploit-db.com/exploits/20210 •