CVE-1999-0298
ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.
Date published : 2000-02-04
http://www.nai.com/nai_labs/asp_set/advisory/06_ypbindsetme_adv.asp