To quote from Debian Policy: Files should be owned by `root.root', and made writable only by the owner and universally readable (and executable, if appropriate), that is mode 644 or 755. [:] They should not be made unreadable (modes like 4711 or 2711 or even 4111); doing so achieves no extra security, because anyone can find the binary in the freely available Debian package; it is merely inconvenient.
Init scripts have permissions 0755 instead of 0754 or 0750