In xorg-server-1.19.5-r1, a "suid-wrapper" USE flag has been introduced (see bug 556834). This is ok. However, "^^ ( suid suid-wrapper )" has been added to REQUIRED_USE, which forces either the xorg server to be installed suid or the suid-wrapper program to be installed suid, which is not ok, but a dangerous nonsense: A suid xorg server or the suid-wrapper is only needed for non-kms graphics drivers and some headless configurations. In my case (amd radeon, kms), xorg works perfectly fine in user mode, without being suid and without the wrapper. Hence, I need neither suid nor suid-wrapper. Any suid program is an additional potential security risc. Hence, for security reasons, suid programs should only be installed if they are really required, they must never be installed without need. And in my case (and most likely for the majority of xorg users), there is absolutely no need for any xorg program being suid.
https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=ca17c5f407cb5264369aafd39ead709e46777dc4