Story #8032: GMN v2
Eliminate unnecessary setuid/setgid programs
System installers often install numerous setuid/setgid programs that are unnecessary, and in some case introduce vulnerabilities, which enable privilege escalation.
setuid/setgid programs which are not needed for proper functioning of the system should be removed or disabled. Those that are needed should be evaluated for vulnerability and configuration issues.