Yes, a hardened server is always better than a fresh install of the latest OS. However, you should be proactively administrating the server in that once the OS has a stable upgrade, I'd jump on the bandwagon and re-harden the server after the kernel update.
Security should be on the top of your list and updating the kernel is an essential piece of the puzzle.
Just my $.02.
|