Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1997-05-29 CVE-1999-0034 Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
local
low complexity
larry-wall sgi bsdi redhat
7.2
1997-05-28 CVE-1999-1143 Unspecified vulnerability in SGI Irix
Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.
local
low complexity
sgi
7.2
1997-05-26 CVE-1999-0064 Unspecified vulnerability in IBM AIX
Buffer overflow in AIX lquerylv program gives root access to local users.
local
low complexity
ibm
7.2
1997-05-26 CVE-1999-0036 Unspecified vulnerability in SGI Irix
IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
local
low complexity
sgi
7.2
1997-05-23 CVE-1999-0259 Unspecified vulnerability in Infodrom Cfingerd 1.2.2
cfingerd lists all users on a system via search.**@target.
network
low complexity
infodrom
5.0
1997-05-21 CVE-1999-0037 Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.
network
low complexity
redhat freebsd
7.5
1997-05-19 CVE-1999-1449 Unspecified vulnerability in SUN Sunos 4.1.4
SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.
local
low complexity
sun
2.1
1997-05-19 CVE-1999-1191 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
local
low complexity
sun
7.2
1997-05-17 CVE-1999-1402 The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
local
low complexity
freebsd sun
2.1
1997-05-16 CVE-1999-1232 Unspecified vulnerability in SGI Irix 6.2
Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.
local
low complexity
sgi
7.2