Buffer overflow in TTSESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.