Posted Nov 3, 2011 13:11 UTC (Thu) by ekj (subscriber, #1524)
[Link]
/bin/mount *IS* suid-root in many (most?) distributions. It needs to be to support letting users mount usb-devices and suchlike.
But it allows only mounting those things that are explicitly configured as mountable by ordinary users, doesn't let them pick a mountpoint, and comes with various other security-features.