NOTE: Microsoft is ending support for Service Pack 2 on the 13th July 2010. So, I've decided the time has come to retire my SP2 pack. I will continue to maintain my SP3 pack for as long as I can. To use my SP3 pack, first slipstream SP3 and then my SP3 Update Pack using nLite.
This is a list of everything that appears on windows update after a default install of windows xp. Like windows update it's split into two sections, high-priority and optional.
Items in bold are not included in my main update pack but you may find them as seperate addons in the forums.
High-priority updates
- 873339 - MS04-043: Vulnerability in HyperTerminal could allow code execution
- 885835 - Superseded by 914389 and 943485
- 885836 - MS04-041: A vulnerability in WordPad could allow code execution
- 886185 - Description of the critical update for Windows Firewall "My Network (subnet) only" scoping in Windows XP Service Pack 2
- 887472 - Microsoft has released a security update to Microsoft Windows Messenger
- 888302 - MS05-007: Vulnerability in Windows could allow information disclosure
- 890046 - Superseded by 920213 and 932168
- 890830 - Microsoft Windows Malicious Software Removal Tool
- 890859 - MS05-018: Vulnerabilities in Windows kernel could allow elevation of privilege and denial of service
- 892130 - WGAV is not included in the pack but it can be downloaded as an addon
- 893756 - MS05-040: Vulnerability in Telephony service could allow remote code execution
- 893803 - Windows Installer 3.1 v2 (3.1.4000.2435) is available
- 894391 - Superseded by 902400
- 896358 - MS05-026: A vulnerability in HTML Help could allow remote code execution
- 896423 - MS05-043: Vulnerability in Print Spooler service could allow remote code execution
- 898461 - Software update 898461 installs a permanent copy of the Package Installer for Windows version 6.2.29.0
- 899587 - MS05-042: Vulnerabilities in Kerberos could allow denial of service, information disclosure, and spoofing
- 899591 - MS05-041: Vulnerability in Remote Desktop Protocol could allow denial of service
- 900485 - Error message in Windows XP Service Pack 2: "Stop 0x7E"
- 900725 - MS05-049: Vulnerabilities in the Windows shell could allow for remote code execution
- 901017 - Vulnerability in the Microsoft Collaboration Data Objects could allow code execution (Windows)
- 901214 - MS05-036: Vulnerability in Microsoft Color Management Module could allow remote code execution
- 902400 - MS05-051: Vulnerabilities in MS DTC and COM+ could allow remote code execution
- 905414 - MS05-045: Vulnerability in Network Connection Manager could allow denial of service
- 905474 - WGAN is not included in the pack but it can be downloaded as an addon
- 905749 - MS05-047: Vulnerability in Plug and Play could allow remote code execution and local elevation of privilege
- 908531 - MS06-015: Vulnerability in Windows Explorer could lead to remote code execution
- 910437 - When Windows Automatic Updates tries to download updates on a Windows XP-based computer, an access violation error may occur
- 911280 - MS06-025: Vulnerability in Routing and Remote Access could allow remote code execution
- 911562 - MS06-014: Vulnerability in Microsoft Data Access Components (MDAC) function could allow code execution
- 911564 - MS06-006: Vulnerability in Windows Media Player plug-in with non-Microsoft Internet browsers could allow remote code execution
- 911927 - MS06-008: Vulnerability in WebClient could allow remote code execution
- 913580 - MS06-018: Vulnerability in Microsoft Distributed Transaction Coordinator could allow denial of service
- 914388 - MS06-036: A vulnerability in the DHCP Client Service could allow remote code execution
- 914389 - MS06-030: Vulnerability in Server Message Block could allow elevation of privilege
- 916595 - Stop error message on a Windows XP-based computer: "STOP 0x000000D1"
- 917344 - MS06-023: Vulnerability in Microsoft JScript could allow remote code execution
- 918118 - MS07-013: Vulnerability in Microsoft RichEdit could allow remote code execution
- 918439 - MS06-022: Vulnerability in ART image rendering could allow remote code execution
- 920213 - MS06-068: Vulnerability in Microsoft Agent could allow remote code execution
- 920670 - MS06-050: Vulnerabilities in Microsoft Windows Hyperlink Object Library could allow remote code execution
- 920683 - MS06-041: Vulnerability in DNS resolution could allow remote code execution
- 920872 - Audio does not play from the correct position after you pause it, and you randomly receive a Stop error
- 922582 - Error message when you try to update a Microsoft Windows-based computer: "0x80070002"
- 923191 - MS06-057: Vulnerability in Windows Explorer could allow remote code execution
- 923561 - MS09-010: Vulnerability in WordPad and Office text converters could allow remote code execution
- 923789 - MS06-069: Vulnerabilities in Macromedia Flash Player from Adobe could allow remote code execution
- 923980 - MS06-066: Vulnerability in the Client Service could allow remote code execution
- 924270 - MS06-070: Vulnerability in Workstation Service could allow remote code execution
- 924667 - MS07-012: Vulnerability in Microsoft Foundation Classes could allow for remote code execution
- 925398 - MS06-078: Vulnerability in Windows Media Format could allow remote code execution
- 925902 - MS07-017: Vulnerability in GDI could allow remote code execution
- 926255 - MS06-075: Vulnerability in Windows could allow elevation of privilege
- 926436 - MS07-011: Vulnerability in Microsoft OLE Dialog could allow remote code execution
- 927779 - MS07-009: Vulnerability in Microsoft Data Access Components could allow remote code execution
- 927802 - MS07-007: Vulnerability in Windows Image Acquisition Service could allow elevation of privilege
- 927891 - You receive an access violation error and the system may become unresponsive when you try to install an update from WU or from MU
- 928255 - MS07-006: Vulnerability in Windows Shell could allow elevation of privilege
- 928843 - MS07-008: A vulnerability in the HTML Help ActiveX control could allow remote code execution
- 929123 - MS07-034: Cumulative security update for Outlook Express and for Windows Mail
- 930178 - MS07-021: Vulnerability in Windows CSRSS could allow remote code execution
- 930916 - Error message when you try to open files on an NTFS file system volume: "Stop 0x0000008E"
- 931261 - MS07-019: Vulnerability in UPnP could allow remote code execution
- 932168 - MS07-020: Vulnerability in Microsoft Agent could allow remote code execution
- 938127 - MS07-050: Vulnerability in Vector Markup Language could allow remote code execution
- 938828 - Error message when the Explorer.exe process crashes on a Windows XP SP2-based computer: "STOP 0xc0000005"
- 941569 - MS07-068: Vulnerability in Windows Media file format could allow remote code execution
- 943055 - MS08-008: Description of the security update for Windows XP: February 12, 2008
- 943460 - MS07-061: Vulnerability in Windows URI Handling could allow remote code execution
- 944338 - MS08-022: Vulnerability in the VBScript and JScript scripting engines could allow remote code execution
- 944653 - MS07-067: Vulnerability in Macrovision driver could allow local elevation of privilege
- 945553 - MS08-020: Vulnerability in DNS client could allow spoofing
- 946026 - MS08-007: Vulnerability in WebDAV Mini-Redirector could allow remote code execution
- 946648 - MS08-050: Description of the update for Windows Messenger 4.7 for Windows XP: August 12, 2008
- 950749 - MS08-028: Vulnerability in the Microsoft Jet Database Engine could allow remote code execution
- 950762 - MS08-036: Vulnerabilities in Pragmatic General Multicast (PGM) could allow denial of service
- 950974 - MS08-049: Vulnerability in Event System could allow remote code execution
- 951066 - MS08-048: Security update for Outlook Express and Windows Mail
- 951376 - MS08-030: Vulnerability in Bluetooth stack could allow remote code execution
- 951748 - MS08-037: Description of the security update for DNS in Windows XP: July 8, 2008
- 952004 - MS09-012: Description of the security update for MSDTC Transaction Facility: April 2009
- 952069 - MS08-076: Description of the security update for Windows Media Format Runtime 7.1, 9.0, 9.5 and 11 and Media Foundation: December 9...
- 952287 - An application that uses the ADO interface may malfunction, or data loss may occur when the application connects to SQL Server in XP
- 952954 - MS08-046: Vulnerabilities in Microsoft Windows Image Color Management could allow remote code execution
- 954155 - MS09-051: Description of the security update for Windows Media Audio Voice Decoder: October 13, 2009
- 955069 - MS08-069: Description of the security update for XML Core Services 3.0: November 11, 2008
- 955759 - Microsoft Security Advisory: Description of the AppCompat update for Indeo codec: December 08, 2009
- 956572 - MS09-012: Description of the security update for Windows Service Isolation: April 2009
- 956802 - MS08-071: Vulnerabilities in GDI could allow remote code execution
- 956803 - MS08-066: Vulnerability in the Microsoft Ancillary Function driver could allow elevation of privilege
- 956844 - MS09-046: Vulnerability in the DHTML Editing Component ActiveX control could allow remote code execution
- 958470 - MS09-044: Description of the security update for Remote Desktop Client Version 5.1: August 11, 2009
- 958644 - MS08-067: Vulnerability in Server service could allow remote code execution
- 958869 - MS09-062: Description of the security update for GDI+ for all editions of Windows XP, Windows Vista, Windows Server 2003, and Windows...
- 959426 - MS09-015: Blended threat vulnerability in SearchPath could allow elevation of privilege
- 960225 - MS09-007: Vulnerability in SChannel could allow spoofing
- 960859 - MS09-042: Vulnerability in Telnet could allow remote code execution
- 961501 - MS09-022: Vulnerabilities in the Windows Print Spooler could allow remote code execution
- 967715 - How to correct "disable Autorun registry key" enforcement in Windows
- 968389 - Extended Protection for Authentication
- 968816 - MS09-047: Description of the security update for Windows Media Format Runtime, Windows Media Services, and Media Foundation: Sept...
- 969059 - MS09-057: Vulnerability in Indexing Service could allow remote code execution
- 969947 - MS09-065: Vulnerabilities in Windows kernel-mode drivers could allow remote code execution
- 970238 - MS09-026: Vulnerability in RPC could allow elevation of privilege
- 970430 - Description of the update that implements Extended Protection for Authentication in the HTTP Protocol Stack (http.sys)
- 971032 - MS09-040: Vulnerability in Message Queuing could allow elevation of privilege
- 971657 - MS09-041: Vulnerability in the Workstation Service could allow elevation of privilege
- 971737 - Description of the update that implements Extended Protection for Authentication in Microsoft Windows HTTP Services (WinHTTP)
- 971468 - MS10-012: Vulnerabilities in SMB Server could allow remote code execution
- 971961 - MS09-045: Vulnerability in JScript Scripting Engines could allow remote code execution
- 972270 - MS10-001: Vulnerability in the Embedded OpenType Font Engine could allow remote code execution
- 973354 - MS09-037: Description of the security update for Outlook Express: August 11, 2009
- 973507 - MS09-037: Description of the security update for the Active Template Library: August 11, 2009
- 973540 - MS09-037: Description of the security update for Windows Media Player: August 11, 2009
- 973687 - When an application uses MSXML to process XHTML, redundant retrieval requests for well-known DTD files from the W3C Web server cause...
- 973815 - MS09-037: Description of the security update for Microsoft MSWebDVD ActiveX Control in Windows XP and Windows Server 2003: Aug...
- 973869 - MS09-037: Description of the security update for the DHTML editing component ActiveX control: August 11, 2009
- 973904 - MS09-073: Description of the security update for Windows XP, Windows 2000, and Windows Server 2003: December 8, 2009
- 974112 - MS09-052: Vulnerability in Windows Media Player could allow remote code execution
- 974318 - MS09-071: Vulnerabilities in the Internet Authentication service could allow remote code execution
- 974392 - MS09-069: Vulnerability in the Local Security Authority Subsystem service could allow denial of service
- 974571 - MS09-056: Vulnerabilities in CryptoAPI could allow spoofing
- 975025 - MS09-051: Description of the security update for Audio Compression Manager: October 13, 2009
- 975467 - MS09-059: Vulnerability in the Local Security Authority Subsystem Service could allow denial of service
- 975560 - MS10-013: Description of the security update for Quartz: February 9, 2010
- 975713 - MS10-007: Vulnerability in Windows Shell Handler could allow remote code execution
- 976098 - December 2009 cumulative time zone update for Microsoft Windows operating systems
- 977165 - MS10-015: Vulnerabilities in Windows kernel could allow elevation of privilege
- 977914 - MS10-013: Description of the security update for AVI filter: February 09, 2010
- 978037 - MS10-011: Vulnerability in Windows Client/Server Run-time Subsystem could allow elevation of privilege
- 978207 - MS10-002: Cumulative security update for Internet Explorer
- 978251 - MS10-006: Vulnerabilities in SMB client could allow remote code execution
- 978262 - MS10-008: Cumulative Security Update of ActiveX Kill Bits
- 978706 - MS10-005: Vulnerability in Microsoft Paint could allow remote code execution
- Internet Explorer 8 - Currently IE8 is not included in the pack.
Optional software updates
- 891122 - Update for WMDRM-enabled Media Players
- 896344 - Update for Windows XP
- 904942 - Update for Windows XP
- 909520 - Microsoft Base Smart Card Cryptographic Service Provider Package
- 925876 - Remote Desktop Connection (Terminal Services Client 6.0)
- 931125 - Root Certificates Update
- 940157 - Windows Search 4.0
- 951847 - Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework 3.5 Family Update
- 979202 - Description of the update for Silverlight: January 19, 2010
- Microsoft .NET Framework version 1.1
- Windows Live Essentials
- Windows Media Player 11