What about implementation defects -- say in a given stepping of a particular CPU?
I'm not a low lever programmer so I can't site relevant examples from memory, but I know there have been numerous such defects with security implications over the years.