security issues of aio


in /sys/conf/NOTES there is a comment
| # Use real implementations of the aio_* system calls. There are numerous
| # stability and security issues in the current aio code that make it
| # unsuitable for inclusion on machines with untrusted local users.
| options VFS_AIO

Are there still problems with aio?

I only found, but no
advisory or other hint that this was fixed (I think I must have missed
that somehow). And some closed PRs about fixed problems.

Do these affect aio.ko as well?


