MkCookie a program for Solaris used to generate fresh 'Magic Cookies' each time the X server is run, was found to be vulnerable to an attack that might compromise the root account.
MkCookie a program that comes installed as SUIDed under Solaris, was found to be vulnerable to an attack in which by entering arbitrary code into the environment variable "HOME$" a buffer overflow can be caused, causing MkCookie to execute the arbitrary code compromising root access.