The security update for April 2007 includes five updates for Microsoft Windows.
| 
Bulletin Description 
 | 
Impact 
 | 
Bulletin Rating 
 | 
| 
Vulnerabilities in GDI Could Allow Remote Code Execution (925902)
  
Affected Software:
 
- Microsoft Windows 2000 Service Pack 4
 
- Microsoft Windows XP Service Pack 2
 
- Microsoft Windows XP Professional x64 Edition
 
- Microsoft Windows Server 2003, Microsoft Windows Server 2003 Service Pack 1, and Microsoft Windows Server 2003 Service Pack 2
 
- Microsoft Windows Server 2003 for Itanium-based Systems, Microsoft Windows Server 2003 with SP1 for Itanium-based Systems, and Microsoft Windows Server 2003 with SP2 for Itanium-based Systems 
 
- Microsoft Windows Server 2003 x64 Edition and Microsoft Windows Server 2003 x64 Edition Service Pack 2
 
- Windows Vista 
 
- Windows Vista x64 Edition
 
  
 | 
 Remote Code Execution 
 | 
 Critical 
 | 
| 
Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261)
  
Affected Software:
 
- Microsoft Windows XP Service Pack 2
 
- Microsoft Windows XP Professional x64 Edition and Microsoft Windows XP Professional x64 Edition Service Pack 2
 
  
 | 
 Remote Code Execution 
 | 
 Critical 
 | 
| 
Vulnerability in Microsoft Agent Could Allow Remote Code Execution (932168)
  
Affected Software:
 
- Microsoft Windows 2000 Service Pack 4
 
- Microsoft Windows XP Service Pack 2
 
- Microsoft Windows XP Professional x64 Edition and Microsoft Windows XP Professional x64 Edition Service Pack 2
 
- Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1 and Microsoft Server 2003 Service Pack 2
 
- Microsoft Windows Server 2003 x64 Edition with Service Pack 1 and Microsoft Windows Server 2003 x64 Edition with Service Pack 2
 
- Microsoft Windows Server 2003 for Itanium-based Systems, Microsoft Windows Server 2003 with SP1 for Itanium-based Systems, and Microsoft Windows Server 2003 with SP2 for Itanium-based Systems 
 
  
 | 
 Remote Code Execution 
 | 
 Critical 
 | 
| 
Vulnerabilities in CSRSS Could Allow Remote Code Execution (930178)
  
Affected Software: 
 
- Microsoft Windows 2000 Service Pack 4
 
- Microsoft Windows XP Service Pack 2
 
- Microsoft Windows XP Professional x64 Edition and Microsoft Windows XP Professional x64 Edition Service Pack 2
 
- Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1 and Microsoft Server 2003 Service Pack 2
 
- Microsoft Windows Server 2003 x64 Edition with Service Pack 1 and Microsoft Windows Server 2003 x64 Edition with Service Pack 2
 
- Microsoft Windows Server 2003 for Itanium-based Systems, Microsoft Windows Server 2003 with SP1 for Itanium-based Systems, and Microsoft Windows Server 2003 with SP2 for Itanium-based Systems 
 
- Windows Vista 
 
- Windows Vista x64 Edition
 
  
 | 
 Remote Code Execution 
 | 
 Critical 
 | 
| 
Vulnerability in Windows Kernel Could Allow Elevation of Privilege (931784)
  
Affected Components:
 
- Microsoft Windows 2000 Service Pack 4
 
- Microsoft Windows XP Service Pack 2
 - Microsoft Windows Server 2003, Microsoft Windows Server 2003 Service Pack 1, and Microsoft 2003 Service Pack 2
 
  
 | 
 Elevation of Privilege 
 | 
 Important 
 |