Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.
https://exchange.xforce.ibmcloud.com/vulnerabilities/7155
http://www.dataguard.no/bugtraq/1994_1/0078.html
http://www.dataguard.no/bugtraq/1994_1/0048.html
http://www.dataguard.no/bugtraq/1994_1/0043.html
http://www.dataguard.no/bugtraq/1994_1/0042.html
http://www.dataguard.no/bugtraq/1994_1/0040.html
http://www.cert.org/advisories/CA-94.12.sendmail.vulnerabilities