I guess I'm probably more pessimistic about this than both of you. Maintainers aren't always responsive, releases take time to prepare, patches aren't evenly propagated, and even when all fixes are applied companies often wait to update - if at all.
Anyone with a credit card will soon be able to order the exploit vending machine. Projects and orgs that have their shit together will be alright. Many however will not.