Earlier quoted context omitted.
Don‘t they refuse to honor embargoes? That would be an explanation why they got no information privately.
Here's an LWN article that references Theo's position on embargoes: https://lwn.net/Articles/601958/
It might be argued that the risk of the exploit making it into the wild would have been higher if the BSDs were notified, on account of the sort of accidental premature disclosure that actually happened. This would appear to be self-serving if stated by the embargo insiders, but it may still be valid, especially if my guesses that a) this problem's biggest potential impact is in cloud computing, and b) there is relatively little use of BSDs in cloud computing, are accurate.