The original patch, as submitted to the security email address, was not acceptable for use in the Linux kernel, as it was missing a Signed-off-by: line. The maintainer had written their own patch by the time the blog post author got around to sending their next email.