"Security teams often have access to vulnerability information before the general public. In fact, Cox says it's "about half and half," for Red Hat's security team -- meaning that Red Hat often has time to address a vulnerability before it's common knowledge. "Where we know about an issue in advance it gives us the ability to work with our peers to get the right patch, look for similar issues in similar code bases, do more testing, and coordinate a release with other affected distributors.""