According to several posts I've seen here, some of these bugs were already prevented by grsec kernels prior to their discovery in mainline.
Is this true?
Why aren't relevant grsec patches moving to mainline? It can't be just that nobody bothers to submit them to mainline. One would think that even if grsec developers aren't interested, then other security-conscious devs would review and cherry-pick patches from the grsec tree and submit them for the mainline. But I get the impression that no cooperation is happening at all.