It doesn't come across well, as a layman, when its on the national news, sky in this case, before Microsoft have bothered their arse to inform their customers.
And no, this isn't an Apple v Microsoft thing. I have windows machines as well don't forget. (If only I could remember where I put mine
)
It depends how its reported. Most hackers will report privately to the vendor, not releasing exploit code until after the vendor has fixed and regression tested the issue. Others release exploit code for their 15 mins of fame. The worse of the lot are those that keep it very quiet, but use/sell it for their own means.
This appears to be the 2nd one.
MS will provide a fix for supported systems automatically as and when they can, based on seriousness. If not deemed critically serious, it will wait for patch Tuesday (2nd Tue of the month), else it will have an out of cycle update. That's really the only method they have available to inform users.
They are better than most. Oracle, for example, use a 3 month cycle for updates, which given the constant flaws in Java, is a bit of a pain. Apple are a law unto themselves, and never tell anyone anything. And the Linux mob just can't sort their arse from their elbows, as shown in the recent Heartbleed 'dangle berries'

Given that this
appears not to be
that serious, despite the media BS, I'd guess it will be an in cycle fix, so probably fixed in 2 weeks.
The media I think are still creaming themselves over Heartbleed, which was very serious, so any flaw will be serious in their eyes for a few weeks... ...until another plane disappears, ferry sinks, or WW3 starts.