Is not the point of this that every bug, no matter how innocuous it might appear has the potential to be used as part of a wider sequence of bugs to build security exploits? In which case every bug is potentially a security bug. Maybe we're just strenuously agreeing here...?