I find it completely stunning that nobody is working on a full-time paid job to handle the security of the kernel.
Microsoft, having suffered a lot a few years ago, got it right and dedicates a lot of ressources on security, internal testing/fuzzing and all (no trolling indented, just a fact).
RedHat or the Linux Foundation could certainly pay someone to improve kernel security...