There is nothing like security. Security is just another word for the budget of the attacker.
This general statement also applies to smart cards.
Common Criteria, ITSEC, FIPS … no guarantee to withstand a professional hacking attempt.
By the way: a security evaluation typically does not reveal software bugs in the operating system!