Comment Re:FUD (Score 3, Informative) 36
I'm the guy that found all those bugs in 2014. There were a _LOT_ of them. And I didn't catch them all. the 2021 x.org advisory lists some more SProc bugs. The 2022 one (that just came out) also lists a couple of byte swapping security bugs. There's no telling if there are more. I suspect there are. Disabling this feature is -imo- a good idea.
Funny you mention GLX. that code is truly horrible, and it has been disabled by default after I reported a bunch of bugs in it. Exactly because it's a huge security risk.