Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 allows local users to gain privileges via a Trojan horse killall program in a directory in the PATH, related to improper handling of the -k option.
https://exchange.xforce.ibmcloud.com/vulnerabilities/46806
http://www.securityfocus.com/bid/32421
http://www.debian.org/security/2008/dsa-1668
http://secunia.com/advisories/32855