Maybe we should start issuing CVEs for all bugs that might negatively impact the security of a system.
The Linux kernel approach
The Linux kernel approach