dig v2.2 local buffer overflow exploit for x86 linux. Note that dig isn't suid/sgid on some platforms, yet on some it is.
9558bb85b9f1f940cb13b09af0c0a312ede194c6966ff6a071a7358a79f49ff1
imapd IMAP4rev1 v10.205 remote root exploit, solaris x86. Exploits the AUTHENTICATE overflow, yielding a remote root shell.
60090c36ac8c823cce06c3173af240ef94222db30faac4df5e3b13de2c7a547b
rpc.nisd remote root overflow, solaris 2.4 x86. Solaris 2.5.0 and 2.5.1 work with different offset.
e7bdfe8a6620ff1c89a033090f13a3a320060779e65b74fd857bbb8857d3f829
/usr/bin/lpset local root stack overflow for Solaris 7, x86.
a475a736a78b2988273182e46297cb031078a395224c65cf9e12a7ddf3c792fb
xsun.c is a Solaris 7 x86 local root stack overflow for /usr/openwin/bin/Xsun.
8af8334ae766a801bf8d4fc9e432e34370f3f1ad1621d0fed7d083f188ac984f
FreeBSD 3.2-REL AMD remote root exploit.
74ebf4b7191e638c02170d2329ab03a22fa5046246e7efe9383a60af7ebd7ef2
wu-ftpd beta17 remote root overflow (non-chroot).
2699909b202c1b4e9dd1267b2d69c4de8b7dd89ca34eeb5ab976aaa1142b46db
Linux x86 man exploit - exploits the stack overflow in man (PAGER env var) yielding egid man. Tested on Redhat 6.2.
dad3bcbb22280ca155e875ba6739d1374edf3d73ce8562e9098dc336d6d26704
DeleGate 5.9.0 remote overflow.
30642c0d094ab7bf796632ec2992a7147c5d28d2f0a2c746c0c9cc62f2186936