The security update for December 2006 includes four fixes for Microsoft Windows, one for Internet Explorer and one for Outlook Express.
| 
Bulletin Description 
 | 
Impact 
 | 
Bulletin Rating 
 | 
| 
Cumulative Security Update for Internet Explorer (925454)
  
Affected Software:
 
- Microsoft Windows 2000 Service Pack 4
 - Microsoft Windows XP Service Pack 2
 - Microsoft Windows XP Professional x64 Edition
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
 - Microsoft Windows Server 2003 x64 Edition
 
  
Affected Components:
 
- Microsoft Internet Explorer 5.01 Service Pack 4 on Windows 2000 Service Pack 4
 - Microsoft Internet Explorer 6 Service Pack 1 when installed on Windows 2000 Service Pack 4
 - Microsoft Internet Explorer 6 for Windows XP Service Pack 2
 - Microsoft Internet Explorer 6 for Windows XP Professional x64 Edition
 - Microsoft Internet Explorer 6 for Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Internet Explorer 6 for Windows Server 2003 for Itanium-based Systems and Windows Server 2003 with SP1 for Itanium-based Systems
 - Microsoft Internet Explorer 6 for Windows Server 2003 x64 Edition
 
  
 | 
 Remote Code Execution
  | 
 Critical
  | 
| 
Vulnerability in Windows Media Format Could Allow Remote Code Execution (923689)
  
Affected Software:
 
- Microsoft Windows Media Format 7.1 through 9.5 Series Runtime on the following operating system versions:
- Microsoft Windows 2000 Service Pack 4
 - Microsoft Windows XP Service Pack 2
 - Microsoft Windows XP Professional x64 Edition
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Windows Server 2003 x64 Edition
   
 - Microsoft Windows Media Format 9.5 Series Runtime x64 Edition on the following operating system versions:
- Microsoft Windows Server 2003 x64 Edition
 - Microsoft Windows Server 2003 x64 Edition
   
 - Microsoft Windows Media Player 6.4
- Microsoft Windows 2000 Service Pack 4
 - Microsoft Windows XP Service Pack 2
 - Microsoft Windows XP Professional x64 Edition
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Windows Server 2003 x64 Edition
   
 
  
 | 
 Remote Code Execution
  | 
 Critical
  | 
| 
Vulnerability in SNMP Could Allow Remote Code Execution (926247)
  
Affected Software:
 
- Microsoft Windows 2000 Service Pack 4
 - Microsoft Windows XP Service Pack 2
 - Microsoft Windows XP Professional x64 Edition
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
 - Microsoft Windows Server 2003 x64 Edition
 
  
 | 
 Remote Code Execution
  | 
 Important
  | 
| 
Vulnerability in Windows Could Allow Elevation of Privilege (926255)
  
Affected Software: 
 
- Microsoft Windows XP Service Pack 2
 - Microsoft Windows Server 2003
 - Microsoft Windows Server 2003 for Itanium-based Systems
 
  
 | 
 Elevation of Privilege
  | 
 Important
  | 
| 
Vulnerability in Remote Installation Service Could Allow Remote Code Execution (926121)
  
Affected Components:
 
- Microsoft Windows 2000 Service Pack 4
 
  
 | 
 Remote Code Execution
  | 
 Important
  | 
| 
Cumulative Security Update for Outlook Express (923694)
  
Affected Software: 
 
- Microsoft Windows 2000 Service Pack 4
 - Microsoft Windows XP Service Pack 2
 - Microsoft Windows XP Professional x64 Edition
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Microsoft Windows Server 2003 and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
 - Microsoft Windows Server 2003 x64 Edition
 
  
Affected Components:
 
- Outlook Express 5.5 Service Pack 2 on Microsoft Windows 2000 Service Pack 4
 - Outlook Express 6 Service Pack 1 when installed on Microsoft Windows 2000 Service Pack 4
 - Outlook Express 6 on Microsoft Windows XP Service Pack 2
 - Outlook Express 6 on Microsoft Windows XP Professional x64 Edition
 - Outlook Express 6 on Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
 - Outlook Express 6 on Microsoft Windows Server 2003 x64 Edition
 - Outlook Express 6 on Microsoft Windows Server 2003 for Itanium-based Systems and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
 
  
 | 
 Remote Code Execution
  | 
 Important
  |