Buffer overflow in pl_main.c in sail in BSDgames before 2.17-7 allows local users to execute arbitrary code via a long player name that is used in a scanf function call.
http://www.securityfocus.com/bid/17401
http://www.pulltheplug.org/fu/?q=node/56
http://www.debian.org/security/2006/dsa-1036
http://securityreason.com/securityalert/736