Monthly Archive: January 2000

CVE-1999-0973

Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode. Date published : 2000-01-04 http://www.securityfocus.com/bid/858

CVE-1999-0969

The Windows NT RPC service allows remote attackers to conduct a denial of service using spoofed malformed RPC packets which generate an error message that is sent to the spoofed host, potentially setting up...

CVE-1999-0967

Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol. Date published : 2000-01-04

CVE-1999-0965

Race condition in xterm allows local users to modify arbitrary files via the logging option. Date published : 2000-01-04

CVE-1999-0963

FreeBSD mount_union command allows local users to gain root privileges via a symlink attack. Date published : 2000-01-04

CVE-1999-0956

The NeXT NetInfo _writers property allows local users to gain root privileges or conduct a denial of service. Date published : 2000-01-04

CVE-1999-0953

WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers. Date published : 2000-01-04

CVE-1999-0940

Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages. Date published : 2000-01-04