-
CVE-1999-0693
•
published on January 4, 2000
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
-
CVE-1999-0699
•
published on January 4, 2000
The Bluestone Sapphire web server allows session hijacking via easily guessable session IDs.
-
CVE-1999-0735
•
published on January 4, 2000
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.
-
CVE-1999-0749
•
published on January 4, 2000
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
-
CVE-1999-0761
•
published on January 4, 2000
Buffer overflow in FreeBSD fts library routines allows local user to modify arbitrary files via the periodic program.
-
CVE-1999-0762
•
published on January 4, 2000
When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information.
-
CVE-1999-0764
•
published on January 4, 2000
NetBSD allows ARP packets to overwrite static ARP entries.
-
CVE-1999-0833
•
published on January 4, 2000
Buffer overflow in BIND 8.2 via NXT records.
-
CVE-1999-0837
•
published on January 4, 2000
Denial of service in BIND by improperly closing TCP sessions via so_linger.
-
CVE-1999-0849
•
published on January 4, 2000
Denial of service in BIND named via maxdname.
-
CVE-1999-0858
•
published on January 4, 2000
Internet Explorer 5 allows a remote attacker to modify the IE client's proxy configuration via a malicious Web Proxy Auto-Discovery (WPAD) server.
-
CVE-1999-0871
•
published on January 4, 2000
Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame Navigate" vulnerability.
-
CVE-1999-0878
•
published on January 4, 2000
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR.
-
CVE-1999-0880
•
published on January 4, 2000
Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly.
-
CVE-1999-0891
•
published on January 4, 2000
The "download behavior" in Internet Explorer 5 allows remote attackers to read arbitrary files via a server-side redirect.
-
CVE-1999-0917
•
published on January 4, 2000
The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files.
-
CVE-1999-0918
•
published on January 4, 2000
Denial of service in various Windows systems via malformed, fragmented IGMP packets.
-
CVE-1999-0937
•
published on January 4, 2000
BNBForm allows remote attackers to read arbitrary files via the automessage hidden form variable.
-
CVE-1999-0938
•
published on January 4, 2000
MBone SDR Package allows remote attackers to execute commands via shell metacharacters in Session Initiation Protocol (SIP) messages.
-
CVE-1999-0939
•
published on January 4, 2000
Denial of service in Debian IRC Epic/epic4 client via a long string.