Buffer overflow in dxterm allows local users to execute arbitrary code via a long -xrm argument.
http://www.securityfocus.com/bid/5746
http://www.iss.net/security_center/static/10148.php
http://marc.info/?l=bugtraq&m=103248659816294&w=2
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0122.html