<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5"
    xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5"
    xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5"
    xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent"
    xmlns:win-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows"
    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
    xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-common-5 http://oval.mitre.org/language/download/schema/version5.3/ovaldefinition/complete/oval-common-schema.xsd
    http://oval.mitre.org/XMLSchema/oval-definitions-5 http://oval.mitre.org/language/download/schema/version5.3/ovaldefinition/complete/oval-definitions-schema.xsd
    http://oval.mitre.org/XMLSchema/oval-definitions-5#windows http://oval.mitre.org/language/download/schema/version5.3/ovaldefinition/complete/windows-definitions-schema.xsd
    http://oval.mitre.org/XMLSchema/oval-definitions-5#independent http://oval.mitre.org/language/download/schema/version5.3/ovaldefinition/complete/independent-definitions-schema.xsd">
    <generator>
        <oval:product_name>National Institute of Standards and Technology</oval:product_name>
        <oval:schema_version>5.3</oval:schema_version>
        <oval:timestamp>2009-11-20T14:08:35.000-05:00</oval:timestamp>
    </generator>
    <!-- ==================================================================================================== -->
    <!-- ==========================================  DEFINITIONS  =========================================== -->
    <!-- ==================================================================================================== -->
    <definitions>
        <definition id="oval:gov.nist.fdcc.patch:def:5" version="1" class="patch">
            <metadata>
                <title>MS05-013: Vulnerability in the DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (891781)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Internet Explorer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-013" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-013.mspx"/>
                <reference source="Microsoft" ref_id="KB891781" ref_url="http://support.microsoft.com/kb/891781"/>
                <reference source="Bugtraq ID" ref_id="11950" ref_url="http://www.securityfocus.com/bid/11950"/>
                <reference source="CERT-VN" ref_id="VU#356600" ref_url="http://www.kb.cert.org/vuls/id/356600"/>
                <reference source="CIAC" ref_id="p-126" ref_url="http://www.ciac.org/ciac/bulletins/p-126.shtml"/>
                <reference source="CVE" ref_id="CVE-2004-1319" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1319"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3851" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3851"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1701" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1701"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4758" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4758"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1114" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1114"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3464" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3464"/>
                <description>Microsoft has released MS05-013 to address security issues in Microsoft Internet Explorer as documented by CVE-2004-1319.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of dhtmled.ocx is less than 6.1.0.9232" negate="false" test_ref="oval:org.mitre.oval:tst:427"/>
                <criterion comment="the patch kb891781 is installed (Hotfix key)" negate="true" test_ref="oval:org.mitre.oval:tst:1151"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:7" version="1" class="patch">
            <metadata>
                <title>MS05-018: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege and Denial of Service (890859)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows kernel</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-018" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-018.mspx"/>
                <reference source="Microsoft" ref_id="KB890859" ref_url="http://support.microsoft.com/kb/890859"/>
                <reference source="BID" ref_id="13109" ref_url="http://www.securityfocus.com/brefId/13109"/>
                <reference source="BID" ref_id="13110" ref_url="http://www.securityfocus.com/brefId/13110"/>
                <reference source="BID" ref_id="13115" ref_url="http://www.securityfocus.com/brefId/13115"/>
                <reference source="BID" ref_id="13121" ref_url="http://www.securityfocus.com/brefId/13121"/>
                <reference source="CIAC" ref_id="p-180" ref_url="http://www.ciac.org/ciac/bulletins/p-180.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-0060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0060"/>
                <reference source="CVE" ref_id="CVE-2005-0061" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0061"/>
                <reference source="CVE" ref_id="CVE-2005-0550" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0550"/>
                <reference source="CVE" ref_id="CVE-2005-0551" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0551"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:266" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:266"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4593" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4593"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4797" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4797"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3994" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3994"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:777" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:777"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3544" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3544"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2043" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2043"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1271" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1271"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3941" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3941"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4832" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4832"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1761" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1761"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1656" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1656"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2562" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2562"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4397" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4397"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2731" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2731"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1822" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1822"/>
                <description>Microsoft has released MS05-018 to address security issues in Windows kernel as documented by CVE-2005-0060, CVE-2005-0061, CVE-2005-0550, and CVE-2005-0551.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="The version of Ntoskrnl.exe is less than 5.1.2600.2622" negate="false" test_ref="oval:org.mitre.oval:tst:2738"/>
                <criterion comment="the patch KB890859 is installed (Hotfix key)" negate="true" test_ref="oval:org.mitre.oval:tst:2737"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:9" version="1" class="patch">
            <metadata>
                <title>MS05-026: Vulnerability in HTML Help Could Allow Remote Code Execution (896358)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>HTML Help Facility</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-026" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-026.mspx"/>
                <reference source="Microsoft" ref_id="KB896358" ref_url="http://support.microsoft.com/kb/896358"/>
                <reference source="BID" ref_id="13953" ref_url="http://www.securityfocus.com/brefId/13953"/>
                <reference source="CERT-VN" ref_id="VU#851869" ref_url="http://www.kb.cert.org/vuls/id/851869"/>
                <reference source="CIAC" ref_id="p-223" ref_url="http://www.ciac.org/ciac/bulletins/p-223.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-1208" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1208"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:381" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:381"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1057" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1057"/>
                <reference ref_id="http://www.microsoft.com/technet/security/bulletin/ms05-026.mspx" source="VENDOR" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-026.mspx"/>
                <description>Microsoft has released MS05-026 to address security issues in HTML Help Facility as documented by CVE-2005-1208.</description>
            </metadata>
            <criteria operator="AND" comment="for Windows XP (32-bit) SP2 a vulnerable version of hh.exe exists">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of hh.exe is less than 5.2.3790.2453" negate="false" test_ref="oval:org.mitre.oval:tst:1230"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:12" version="1" class="patch">
            <metadata>
                <title>MS05-033: Vulnerability in Telnet Client Could Allow Information Disclosure (896428)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Services for UNIX</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-033" ref_url="http://www.microsoft.com/technet/Security/bulletin/ms05-033.mspx"/>
                <reference source="Microsoft" ref_id="KB896428" ref_url="http://support.microsoft.com/kb/896428"/>
                <reference source="BID" ref_id="13940" ref_url="http://www.securityfocus.com/brefId/13940"/>
                <reference source="CERT-VN" ref_id="VU#800829" ref_url="http://www.kb.cert.org/vuls/id/800829"/>
                <reference source="CIAC" ref_id="p-230" ref_url="http://www.ciac.org/ciac/bulletins/p-230.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-1205" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1205"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1132" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1132"/>
                <description>Microsoft has released MS05-033 to address security issues in Services for UNIX as documented by CVE-2005-1205.</description>
            </metadata>
            <criteria operator="AND" comment="Software section">
                <criterion comment="the version of telnet.exe is less than 5.1.2600.2674" test_ref="oval:org.mitre.oval:tst:1136"/>
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:13" version="1" class="patch">
            <metadata>
                <title>MS05-036: Vulnerability in Microsoft Color Management Module Could Allow Remote Code Execution (901214)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Color Management Module</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-036" ref_url="http://www.microsoft.com/technet/Security/bulletin/ms05-036.mspx"/>
                <reference source="Microsoft" ref_id="KB901214" ref_url="http://support.microsoft.com/kb/901214"/>
                <reference source="BID" ref_id="14214" ref_url="http://www.securityfocus.com/brefId/14214"/>
                <reference source="CERT-VN" ref_id="VU#720742" ref_url="http://www.kb.cert.org/vuls/id/720742"/>
                <reference source="CIAC" ref_id="p-248" ref_url="http://www.ciac.org/ciac/bulletins/p-248.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-1219" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1219"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1125" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1125"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:440" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:440"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:330" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:330"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1280" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1280"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:769" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:769"/>
                <description>Microsoft has released MS05-036 to address security issues in Microsoft Color Management Module as documented by CVE-2005-1219.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of mscms.dll is less than 5.1.2600.2709" negate="false" test_ref="oval:org.mitre.oval:tst:2698"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:14" version="1" class="patch">
            <metadata>
                <title>MS05-040: Vulnerability in Telephony Service Could Allow Remote Code Execution (893756)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-040" ref_url="http://www.microsoft.com/technet/Security/bulletin/ms05-040.mspx"/>
                <reference source="Microsoft" ref_id="KB893756" ref_url="http://support.microsoft.com/kb/893756"/>
                <reference source="BID" ref_id="14518" ref_url="http://www.securityfocus.com/brefId/14518"/>
                <reference source="CIAC" ref_id="p-268" ref_url="http://www.ciac.org/ciac/bulletins/p-268.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-0058" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0058"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1297" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1297"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100084" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100084"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1075" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1075"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1213" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1213"/>
                <description>Microsoft has released MS05-040 to address security issues in the operating system as documented by CVE-2005-0058.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of tapisrv.dll is less than 5.1.2600.2716" test_ref="oval:org.mitre.oval:tst:1194"/>
                <criterion comment="the Telephony service is enabled" test_ref="oval:org.mitre.oval:tst:1191"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:15" version="1" class="patch">
            <metadata>
                <title>MS05-041: Vulnerability in Remote Desktop Protocol Could Allow Denial of Service (899591)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-041" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-041.mspx"/>
                <reference source="Microsoft" ref_id="KB899591" ref_url="http://support.microsoft.com/kb/899591"/>
                <reference source="BID" ref_id="14259" ref_url="http://www.securityfocus.com/brefId/14259"/>
                <reference source="CERT-VN" ref_id="VU#490628" ref_url="http://www.kb.cert.org/vuls/id/490628"/>
                <reference source="CVE" ref_id="CVE-2005-1218" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1218"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:180" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:180"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:618" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:618"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100092" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100092"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:609" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:609"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:376" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:376"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:346" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:346"/>
                <description>Microsoft has released MS05-041 to address security issues in the operating system as documented by CVE-2005-1218.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion test_ref="oval:gov.nist.fdcc.patch:tst:11" comment="The version of Rdpwd.sys is less than 5.1.2600.2695"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:28" version="1" class="patch">
            <metadata>
                <title>MS06-002: Vulnerability in Embedded Web Fonts Could Allow Remote Code Execution (908519)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-002" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-002.mspx"/>
                <reference source="Microsoft" ref_id="KB908519" ref_url="http://support.microsoft.com/kb/908519"/>
                <reference source="BID" ref_id="16194" ref_url="http://www.securityfocus.com/brefId/16194"/>
                <reference source="CERT" ref_id="VU#915930" ref_url="http://www.kb.cert.org/vuls/refId/915930"/>
                <reference source="CVE" ref_id="CVE-2006-0010" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0010"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1185" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1185"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1126" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1126"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1491" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1491"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1462" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1462"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:698" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:698"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:714" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:714"/>
                <description>Microsoft has released MS06-002 to address security issues in the operating system as documented by CVE-2006-0010.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR" comment="Fontsub.dll &lt; 5.1.2600.2777 or T2embed.dll &lt;5.1.2600.2777 (WinXP,SP2)">
                    <criterion comment="the version of Fontsub.dll is less than 5.1.2600.2777" negate="false" test_ref="oval:org.mitre.oval:tst:2416"/>
                    <criterion comment="the version of T2embed.dll is less than 5.1.2600.2777" negate="false" test_ref="oval:org.mitre.oval:tst:2415"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:31" version="1" class="patch">
            <metadata>
                <title>MS06-009: Vulnerability in the Korean Input Method Editor Could Allow Elevation of Privilege (901190)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-009" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-009.mspx"/>
                <reference source="Microsoft" ref_id="KB901190" ref_url="http://support.microsoft.com/kb/901190"/>
                <reference source="Bugtraq ID" ref_id="16643" ref_url="http://www.securityfocus.com/bid/16643"/>
                <reference source="CERT-VN" ref_id="VU#739844" ref_url="http://www.kb.cert.org/vuls/id/739844"/>
                <reference source="CVE" ref_id="CVE-2006-0008" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0008"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1688" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1688"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:727" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:727"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1650" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1650"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1595" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1595"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1664" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1664"/>
                <description>Microsoft has released MS06-009 to address security issues in the operating system as documented by CVE-2006-0008.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Imekr61.ime is less than 6.1.2600.3 (WinXP)" negate="false" test_ref="oval:org.mitre.oval:tst:783"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:38" version="1" class="patch">
            <metadata>
                <title>MS06-018: Vulnerability in Microsoft Distributed Transaction Coordinator Could Allow Denial of Service (913580)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-018" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-018.mspx"/>
                <reference source="Microsoft" ref_id="KB913580" ref_url="http://support.microsoft.com/kb/913580"/>
                <reference source="BID" ref_id="17905" ref_url="http://www.securityfocus.com/brefId/17905"/>
                <reference source="BID" ref_id="17906" ref_url="http://www.securityfocus.com/brefId/17906"/>
                <reference source="CVE" ref_id="CVE-2006-0034" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0034"/>
                <reference source="CVE" ref_id="CVE-2006-1184" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1184"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1477" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1477"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1912" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1912"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1908" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1908"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1222" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1222"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1779" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1779"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1990" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1990"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1295" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1295"/>
                <description>Microsoft has released MS06-018 to address security issues in the operating system as documented by CVE-2006-0034 and CVE-2006-1184.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Msdtctm.dll is less than 2001.12.4414.311" negate="false" test_ref="oval:org.mitre.oval:tst:670"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:41" version="1" class="patch">
            <metadata>
                <title>MS06-022: Vulnerability in ART Image Rendering Could Allow Remote Code Execution (918439)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-022" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-022.mspx"/>
                <reference source="Microsoft" ref_id="KB918439" ref_url="http://support.microsoft.com/kb/918439"/>
                <reference source="Bugtraq ID" ref_id="18394" ref_url="http://www.securityfocus.com/bid/18394"/>
                <reference source="CERT-VN" ref_id="VU#923236" ref_url="http://www.kb.cert.org/vuls/id/923236"/>
                <reference source="CVE" ref_id="CVE-2006-2378" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2378"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1866" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1866"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1756" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1756"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1668" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1668"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1640" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1640"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1590" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1590"/>
                <description>Microsoft has released MS06-022 to address security issues in the operating system as documented by CVE-2006-2378.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of jgdw400.dll is less than 106.0.0.0" negate="false" test_ref="oval:org.mitre.oval:tst:835"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:44" version="1" class="patch">
            <metadata>
                <title>MS06-025: Vulnerability in Routing and Remote Access Could Allow Remote Code Execution (911280)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-025" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-025.mspx"/>
                <reference source="Microsoft" ref_id="KB911280" ref_url="http://support.microsoft.com/kb/911280"/>
                <reference source="Bugtraq ID" ref_id="18358" ref_url="http://www.securityfocus.com/bid/18358"/>
                <reference source="Bugtraq ID" ref_id="18325" ref_url="http://www.securityfocus.com/bid/18325"/>
                <reference source="CERT-VN" ref_id="VU#631516" ref_url="http://www.kb.cert.org/vuls/id/631516"/>
                <reference source="CERT-VN" ref_id="VU#814644" ref_url="http://www.kb.cert.org/vuls/id/814644"/>
                <reference source="CVE" ref_id="CVE-2006-2370" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2370"/>
                <reference source="CVE" ref_id="CVE-2006-2371" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2371"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1851" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1851"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2061" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2061"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1741" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1741"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1587" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1587"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1720" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1720"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1674" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1674"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1983" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1983"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1846" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1846"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1907" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1907"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1936" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1936"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1857" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1857"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1823" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1823"/>
                <description>Microsoft has released MS06-025 to address security issues in the operating system as documented by CVE-2006-2370 and CVE-2006-2371.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of rasmans.dll is less than 5.1.2600.2908" negate="false" test_ref="oval:org.mitre.oval:tst:705"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:48" version="1" class="patch">
            <metadata>
                <title>MS06-030: Vulnerability in Server Message Block Could Allow Elevation of Privilege (914389)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-030" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-030.mspx"/>
                <reference source="Microsoft" ref_id="KB914389" ref_url="http://support.microsoft.com/kb/914389"/>
                <reference source="BID" ref_id="18357" ref_url="http://www.securityfocus.com/brefId/18357"/>
                <reference source="BID" ref_id="18356" ref_url="http://www.securityfocus.com/brefId/18356"/>
                <reference source="CVE" ref_id="CVE-2006-2373" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2373"/>
                <reference source="CVE" ref_id="CVE-2006-2374" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2374"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1979" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1979"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1792" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1792"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1841" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1841"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2007" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2007"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1942" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1942"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1730" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1730"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2060" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2060"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2030" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2030"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1827" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1827"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1904" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1904"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1137" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1137"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1850" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1850"/>
                <description>Microsoft has released MS06-030 to address security issues in the operating system as documented by CVE-2006-2373 and CVE-2006-2374.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of mrxsmb.sys is less than 5.1.2600.2902" negate="false" test_ref="oval:org.mitre.oval:tst:692"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:57" version="1" class="patch">
            <metadata>
                <title>MS06-041: Vulnerabilities in DNS Resolution Could Allow Remote Code Execution (920683)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-041" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-041.mspx"/>
                <reference source="Microsoft" ref_id="KB920683" ref_url="http://support.microsoft.com/kb/920683"/>
                <reference source="CERT-VN" ref_id="VU#794580" ref_url="http://www.kb.cert.org/vuls/id/794580"/>
                <reference source="CERT-VN" ref_id="VU#908276" ref_url="http://www.kb.cert.org/vuls/id/908276"/>
                <reference source="CVE" ref_id="CVE-2006-3440" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3440"/>
                <reference source="CVE" ref_id="CVE-2006-3441" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3441"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:747" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:747"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:723" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:723"/>
                <description>Microsoft has released MS06-041 to address security issues in the operating system as documented by CVE-2006-3440 and CVE-2006-3441.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of dnsapi.dll is less than 5.1.2600.2938" test_ref="oval:org.mitre.oval:tst:198"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:163" version="1" class="patch">
            <metadata>
                <title>MS05-042: Vulnerabilities in Kerberos Could Allow Denial of Service, Information Disclosure, and Spoofing (899587)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-042" ref_url="http://www.microsoft.com/technet/Security/bulletin/ms05-042.mspx"/>
                <reference source="Microsoft" ref_id="KB899587" ref_url="http://support.microsoft.com/kb/899587"/>
                <reference source="BID" ref_id="14519" ref_url="http://www.securityfocus.com/brefId/14519"/>
                <reference source="BID" ref_id="14520" ref_url="http://www.securityfocus.com/brefId/14520"/>
                <reference source="CVE" ref_id="CVE-2005-1981" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1981"/>
                <reference source="CVE" ref_id="CVE-2005-1982" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1982"/>
                <reference source="CERT-VN" ref_id="VU#477341" ref_url="http://www.kb.cert.org/vuls/id/477341"/>
                <reference source="CERT-VN" ref_id="VU#610133" ref_url="http://www.kb.cert.org/vuls/id/610133"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100106" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100106"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100105" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100105"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100104" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100104"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100103" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100103"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100102" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100102"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100101" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100101"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100100" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100100"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100099" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100099"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100098" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100098"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100097" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100097"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100096" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100096"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100095" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100095"/>
                <description>Microsoft has released MS05-042 to address security issues in the operating system as documented by CVE-2005-1981 and CVE-2005-1982.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of kerberos.dll is less than 5.1.2600.2698" negate="false" test_ref="oval:org.mitre.oval:tst:220"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:173" version="1" class="patch">
            <metadata>
                <title>MS05-043: Vulnerability in Print Spooler Service Could Allow Remote Code Execution (896423)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Print Spooler Service</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-043" ref_url="http://www.microsoft.com/technet/Security/bulletin/ms05-043.mspx"/>
                <reference source="Microsoft" ref_id="KB896423" ref_url="http://support.microsoft.com/kb/896423"/>
                <reference source="BID" ref_id="14514" ref_url="http://www.securityfocus.com/brefId/14514"/>
                <reference source="CERT" ref_id="TA05-221A" ref_url="http://www.kb.cert.org/vuls/refId/5-221A"/>
                <reference source="CERT-VN" ref_id="VU#220821" ref_url="http://www.kb.cert.org/vuls/id/220821"/>
                <reference source="CIAC" ref_id="p-267" ref_url="http://www.ciac.org/ciac/bulletins/p-267.shtml"/>
                <reference source="CVE" ref_id="CVE-2005-1984" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1984"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:256" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:256"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1045" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1045"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1405" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1405"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:100077" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100077"/>
                <description>Microsoft has released MS05-043 to address security issues in Print Spooler Service as documented by CVE-2005-1984.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Spoolsv.exe is less than 5.1.2600.2696" test_ref="oval:gov.nist.fdcc.patch:tst:21"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:214" version="1" class="patch">
            <metadata>
                <title>MS05-047: Vulnerability in Plug and Play Could Allow Remote Code Execution and Local Elevation of Privilege (905749)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-047" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx"/>
                <reference source="Microsoft" ref_id="KB905749" ref_url="http://support.microsoft.com/kb/905749"/>
                <reference source="Bugtraq ID" ref_id="15065" ref_url="http://www.securityfocus.com/bid/15065"/>
                <reference source="CERT-VN" ref_id="VU#214572" ref_url="http://www.kb.cert.org/vuls/id/214572"/>
                <reference source="CVE" ref_id="CVE-2005-2120" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2120"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1328" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1328"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1519" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1519"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1244" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1244"/>
                <description>Microsoft has released MS05-047 to address security issues in the operating system as documented by CVE-2005-2120.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="umpnpmgr.dll is less than 5.1.2600.2744" negate="false" test_ref="oval:org.mitre.oval:tst:882"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:221" version="1" class="patch">
            <metadata>
                <title>MS05-048: Vulnerability in the Microsoft Collaboration Data Objects Could Allow Remote Code Execution (907245)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-048" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-048.mspx"/>
                <reference source="Microsoft" ref_id="KB907245" ref_url="http://support.microsoft.com/kb/907245"/>
                <reference source="Bugtraq ID" ref_id="15067" ref_url="http://www.securityfocus.com/bid/15067"/>
                <reference source="CERT-VN" ref_id="VU#883460" ref_url="http://www.kb.cert.org/vuls/id/883460"/>
                <reference source="CVE" ref_id="CVE-2005-1987" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1987"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1130" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1130"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1420" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1420"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:581" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:581"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1201" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1201"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1515" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1515"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1406" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1406"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:848" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:848"/>
                <description>Microsoft has released MS05-048 to address security issues in the operating system as documented by CVE-2005-1987.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="cdosys.dll is less than 6.2.4.0" negate="false" test_ref="oval:org.mitre.oval:tst:884"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:229" version="1" class="patch">
            <metadata>
                <title>MS06-078: Vulnerability in Windows Media Format Could Allow Remote Code Execution (923689)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-078" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-078.mspx"/>
                <reference source="Microsoft" ref_id="KB923689" ref_url="http://support.microsoft.com/kb/923689"/>
                <reference source="CVE" ref_id="CVE-2006-4702" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4702"/>
                <reference source="CVE" ref_id="CVE-2006-6134" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6134"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:536" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:536"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:669" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:669"/>
                <description>Microsoft has released MS06-078 to address security issues in Windows Media Player as documented by CVE-2006-4702 and CVE-2006-6134.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition definition_ref="oval:gov.nist.fdcc.patch:def:115276" comment="Windows XP (32-bit) SP2 is installed"/>
                    <criterion test_ref="oval:org.mitre.oval:tst:100" comment="Media Player 8 (v6.4) is installed."/>
                    <criterion test_ref="oval:org.mitre.oval:tst:96" comment="the version of dxmasf.dll is less than 6.4.9.1133"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition definition_ref="oval:gov.nist.fdcc.patch:def:115276" comment="Windows XP (32-bit) SP2 is installed"/>
                    <criterion test_ref="oval:org.mitre.oval:tst:125" comment="Wmvcore.dll for Windows Media Format 9.0 is installed."/>
                    <criterion test_ref="oval:org.mitre.oval:tst:191" comment="the version of Wmvcore.dll is less than 10.0.0.3702"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:230" version="1" class="patch">
            <metadata>
                <title>MS06-075: Vulnerability in Windows Could Allow Elevation of Privilege (926255)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-075" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-075.mspx"/>
                <reference source="Microsoft" ref_id="KB926255" ref_url="http://support.microsoft.com/kb/926255"/>
                <reference source="CVE" ref_id="CVE-2006-5585" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5585"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:560" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:560"/>
                <description>Microsoft has released MS06-075 to address security issues in the operating system as documented by CVE-2006-5585.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Sxs.dll is less than 5.1.2600.3019" test_ref="oval:org.mitre.oval:tst:137"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:231" version="1" class="patch">
            <metadata>
                <title>MS05-049: Vulnerabilities in Windows Shell Could Allow Remote Code Execution (900725)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-049" ref_url="http://www.microsoft.com/technet/security/bulletin/ms05-049.mspx"/>
                <reference source="Microsoft" ref_id="KB900725" ref_url="http://support.microsoft.com/kb/900725"/>
                <reference source="Bugtraq ID" ref_id="15064" ref_url="http://www.securityfocus.com/bid/15064"/>
                <reference source="Bugtraq ID" ref_id="15069" ref_url="http://www.securityfocus.com/bid/15069"/>
                <reference source="Bugtraq ID" ref_id="15070" ref_url="http://www.securityfocus.com/bid/15070"/>
                <reference source="CERT-VN" ref_id="VU#922708" ref_url="http://www.kb.cert.org/vuls/id/922708"/>
                <reference source="CVE" ref_id="CVE-2005-2117" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2117"/>
                <reference source="CVE" ref_id="CVE-2005-2118" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2118"/>
                <reference source="CVE" ref_id="CVE-2005-2122" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2122"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:708" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:708"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1291" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1291"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1551" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1551"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1517" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1517"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1329" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1329"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1116" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1116"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1488" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1488"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1537" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1537"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1192" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1192"/>
                <description>Microsoft has released MS05-049 to address security issues in the operating system as documented by CVE-2005-2117, CVE-2005-2118, and CVE-2005-2122.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="shell32.dll is less than 6.0.2900.2763" negate="false" test_ref="oval:org.mitre.oval:tst:883"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:232" version="1" class="patch">
            <metadata>
                <title>MS06-074: Vulnerability in SNMP Could Allow Remote Code Execution (926247)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-074" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-074.mspx"/>
                <reference source="Microsoft" ref_id="KB926247" ref_url="http://support.microsoft.com/kb/926247"/>
                <reference source="CVE" ref_id="CVE-2006-5583" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5583"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1047" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1047"/>
                <description>Microsoft has released MS06-074 to address security issues in the operating system as documented by CVE-2006-5583.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Snmp.exe is less than 5.1.2600.3038" test_ref="oval:org.mitre.oval:tst:119"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:241" version="1" class="patch">
            <metadata>
                <title>MS05-050: Vulnerability in DirectShow Could Allow Remote Code Execution (904706)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>DirectX</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-050" ref_url="http://www.microsoft.com/technet/security/bulletin/MS05-050.mspx"/>
                <reference source="Microsoft" ref_id="KB904706" ref_url="http://support.microsoft.com/kb/904706"/>
                <reference source="Bugtraq ID" ref_id="15063" ref_url="http://www.securityfocus.com/bid/15063"/>
                <reference source="CERT-VN" ref_id="VU#995220" ref_url="http://www.kb.cert.org/vuls/id/995220"/>
                <reference source="CVE" ref_id="CVE-2005-2128" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2128"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1231" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1231"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1149" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1149"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1434" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1434"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1424" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1424"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1267" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1267"/>
                <description>Microsoft has released MS05-050 to address security issues in DirectX as documented by CVE-2005-2128.</description>
            </metadata>
            <criteria operator="AND" comment="DirectX packaged with Windows XP,SP2 has DirectShow Vulnerability">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Quartz.dll is greater than or equal to 6.5.2600.0" negate="false" test_ref="oval:org.mitre.oval:tst:1064"/>
                <criterion comment="the version of Quartz.dll is less than 6.5.2600.2749" negate="false" test_ref="oval:org.mitre.oval:tst:1063"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:267" version="1" class="patch">
            <metadata>
                <title>MS07-005: Vulnerability in Step-by-Step Interactive Training Could Allow Remote Code Execution (923723)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Interactive Training</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-005" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-005.mspx"/>
                <reference source="Microsoft" ref_id="KB923723" ref_url="http://support.microsoft.com/kb/923723"/>
                <reference source="CVE" ref_id="CVE-2006-3448" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3448"/>
                <description>Microsoft has released MS07-005 to address security issues in Microsoft Interactive Training as documented by CVE-2006-3448.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                <criterion comment="the version of Orun32.exe is less than 3.5.0.118" test_ref="oval:org.mitre.oval:tst:3436"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:268" version="1" class="patch">
            <metadata>
                <title>MS07-006: Vulnerability in Windows Shell Could Allow Elevation of Privilege (928255)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-006" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-006.mspx"/>
                <reference source="Microsoft" ref_id="KB928255" ref_url="http://support.microsoft.com/kb/928255"/>
                <reference source="CVE" ref_id="CVE-2007-0211" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0211"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:224" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:224"/>
                <description>Microsoft has released MS07-006 to address security issues in Operating System as documented by CVE-2007-0211.</description>
            </metadata>
            <criteria comment="Microsoft Windows XP Service Pack 2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of shell32.dll is less than 6.0.2900.3051" test_ref="oval:org.mitre.oval:tst:3365"/>
                <criterion comment="The version of shsvcs.dll is less than 6.0.2900.3051" test_ref="oval:gov.nist.fdcc.patch:tst:115283"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:269" version="1" class="patch">
            <metadata>
                <title>MS07-007: Vulnerability in Windows Image Acquisition Service Could Allow Elevation of Privilege (927802)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-007" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-007.mspx"/>
                <reference source="Microsoft" ref_id="KB927802" ref_url="http://support.microsoft.com/kb/927802"/>
                <reference source="Bugtraq ID" ref_id="20704" ref_url="http://www.securityfocus.com/bid/20704"/>
                <reference source="CERT-VN" ref_id="VU#589272" ref_url="http://www.kb.cert.org/vuls/id/589272"/>
                <reference source="CVE" ref_id="CVE-2007-0210" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0210"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:186" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:186"/>
                <description>Microsoft has released MS07-007 to address security issues in Operating System as documented by CVE-2007-0210.</description>
            </metadata>
            <criteria comment="Microsoft Windows XP Service Pack 2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Wiaservc.dll is less than 5.1.2600.3051" test_ref="oval:org.mitre.oval:tst:3227"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:270" version="1" class="patch">
            <metadata>
                <title>MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution (928843)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-008" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-008.mspx"/>
                <reference source="Microsoft" ref_id="KB928843" ref_url="http://support.microsoft.com/kb/928843"/>
                <reference source="CVE" ref_id="CVE-2007-0214" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0214"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:125" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:125"/>
                <description>Microsoft has released MS07-008 to address security issues in Operating System as documented by CVE-2007-0214.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Hhctrl.ocx is less than 5.2.3790.2847" test_ref="oval:org.mitre.oval:tst:3154"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:271" version="1" class="patch">
            <metadata>
                <title>MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution (927779)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-009" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-009.mspx"/>
                <reference source="Microsoft" ref_id="KB927779" ref_url="http://support.microsoft.com/kb/927779"/>
                <reference source="CVE" ref_id="CVE-2006-5559" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5559"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:214" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:214"/>
                <description>Microsoft has released MS07-009 to address security issues in Operating System as documented by CVE-2006-5559.</description>
            </metadata>
            <criteria comment="Windows XP SP2 with MDAC 2.8 SP1" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="MDAC 2.8 SP1 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2363"/>
                <criterion comment="the version of msado15.dll is less than 2.81.1128.0" test_ref="oval:org.mitre.oval:tst:3821"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:272" version="1" class="patch">
            <metadata>
                <title>MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution (926436)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Interactive Training</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-011" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-011.mspx"/>
                <reference source="Microsoft" ref_id="KB926436" ref_url="http://support.microsoft.com/kb/926436"/>
                <reference source="CVE" ref_id="CVE-2007-0026" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0026"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:540" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:540"/>
                <description>Microsoft has released MS07-011 to address security issues in Microsoft Interactive Training as documented by CVE-2007-0026.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Oledlg.dll is less than 5.1.2600.3016" test_ref="oval:org.mitre.oval:tst:3286"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:273" version="1" class="patch">
            <metadata>
                <title>MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution (924667)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-012" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx"/>
                <reference source="Microsoft" ref_id="KB924667" ref_url="http://support.microsoft.com/kb/924667"/>
                <reference source="CVE" ref_id="CVE-2007-0025" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0025"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:157" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:157"/>
                <description>Microsoft has released MS07-012 to address security issues in Operating System as documented by CVE-2007-0025.</description>
            </metadata>
            <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Mfc40u.dll is less than 4.1.0.6141" test_ref="oval:org.mitre.oval:tst:3685"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:274" version="1" class="patch">
            <metadata>
                <title>MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution (918118)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-013" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx"/>
                <reference source="Microsoft" ref_id="KB918118" ref_url="http://support.microsoft.com/kb/918118"/>
                <reference source="CVE" ref_id="CVE-2006-1311" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1311"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1090" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1090"/>
                <description>Microsoft has released MS07-013 to address security issues in Operating System as documented by CVE-2006-1311.</description>
            </metadata>
            <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Riched20.dll is less than 5.30.23.1228" test_ref="oval:org.mitre.oval:tst:3159"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:287" version="1" class="patch">
            <metadata>
                <title>MS07-017: Vulnerabilities in GDI Could Allow Remote Code Execution (925902)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-017" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-017.mspx"/>
                <reference source="Microsoft" ref_id="KB925902" ref_url="http://support.microsoft.com/kb/925902"/>
                <reference source="CVE" ref_id="CVE-2006-5586" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5586"/>
                <reference source="CVE" ref_id="CVE-2006-5758" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5758"/>
                <reference source="CVE" ref_id="CVE-2007-0038" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0038"/>
                <reference source="CVE" ref_id="CVE-2007-1211" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1211"/>
                <reference source="CVE" ref_id="CVE-2007-1212" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1212"/>
                <reference source="CVE" ref_id="CVE-2007-1215" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1215"/>
                <reference source="Bugtraq ID" ref_id="20940" ref_url="http://www.securityfocus.com/bid/20940"/>
                <reference source="CERT-VN" ref_id="VU#191609" ref_url="http://www.kb.cert.org/vuls/id/191609"/>
                <description>Microsoft has released MS07-017 to address security issues in Operating System as documented by CVE-2006-5586, CVE-2006-5758, CVE-2007-0038, CVE-2007-1211, CVE-2007-1212, CVE-2007-1213, and CVE-2007-1215.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="gdi32.dll version is less than 5.1.2600.3099" test_ref="oval:org.mitre.oval:tst:3215"/>
                    <criterion comment="win32k.sysl version is less than 5.1.2600.3099" test_ref="oval:gov.nist.fdcc.patch:tst:115284"/>
                </criteria>
                <criteria comment="Windows XP (64-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP, SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="gdi32.dll version is less than 5.2.3790.4033" test_ref="oval:org.mitre.oval:tst:3612"/>
                    <criterion comment="win32k.sysl version is less than 5.2.3790.4033" test_ref="oval:gov.nist.fdcc.patch:tst:115285"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:289" version="1" class="patch">
            <metadata>
                <title>MS07-019: Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-019" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-019.mspx"/>
                <reference source="Microsoft" ref_id="KB931261" ref_url="http://support.microsoft.com/kb/931261"/>
                <reference source="CVE" ref_id="CVE-2007-1204" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1204"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2049" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2049"/>
                <description>Microsoft has released MS07-019 to address security issues in Operating System as documented by CVE-2007-1204.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="WinXP SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of Upnphost.dll is less than 5.1.2600.3077" test_ref="oval:org.mitre.oval:tst:3717"/>
                </criteria>
                <criteria comment="WinXP SP2 (64-bit)" operator="AND">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of Upnphost.dll is less than 5.2.3790.4019" test_ref="oval:org.mitre.oval:tst:3573"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:290" version="1" class="patch">
            <metadata>
                <title>MS07-020: Vulnerability in Microsoft Agent Could Allow Remote Code Execution (932168)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2007-1205" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1205"/>
                <reference source="Microsoft" ref_id="MS07-020" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-020.mspx"/>
                <reference source="Microsoft" ref_id="KB932168" ref_url="http://support.microsoft.com/kb/932168"/>
                <description>Microsoft has released MS07-020 to address security issues in Operating System as documented by CVE-2007-1205.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Agentdpv.dll version is less than 2.0.0.3425" test_ref="oval:org.mitre.oval:tst:4156"/>
                </criteria>
                <criteria comment="Windows XP Service Pack Service Pack 2(64-bit)" operator="AND">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Agentdpv.dll version is less than 5.2.3790.1243" test_ref="oval:org.mitre.oval:tst:3462"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:291" version="1" class="patch">
            <metadata>
                <title>MS07-021: Vulnerabilities in CSRSS Could Allow Remote Code Execution (930178)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2006-6696" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6696"/>
                <reference source="CVE" ref_id="CVE-2006-6797" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6797"/>
                <reference source="Microsoft" ref_id="MS07-021" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-021.mspx"/>
                <reference source="Bugtraq ID" ref_id="21688" ref_url="http://www.securityfocus.com/bid/21688"/>
                <reference source="Microsoft" ref_id="KB930178" ref_url="http://support.microsoft.com/kb/930178"/>
                <description>Microsoft has released MS07-021 to address security issues in Operating System as documented by CVE-2006-6696, CVE-2006-6797, and CVE-2007-1209.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="Windows XP SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="winsrv.dll version is less than 5.1.2600.3103" test_ref="oval:org.mitre.oval:tst:3654"/>
                </criteria>
                <criteria comment="Windows XP Service Pack Service Pack 2(64-bit)" operator="AND">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="winsrv.dll version is less than 5.2.3790.4043" test_ref="oval:gov.nist.fdcc.patch:tst:115282"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:293" version="1" class="patch">
            <metadata>
                <title>MS06-006: Vulnerability in Windows Media Player Plug-in with Non-Microsoft Internet Browsers Could Allow Remote Code Execution (911564)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Media Player</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-006" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-006.mspx"/>
                <reference source="Microsoft" ref_id="KB911564" ref_url="http://support.microsoft.com/kb/911564"/>
                <reference source="Bugtraq ID" ref_id="16644" ref_url="http://www.securityfocus.com/bid/16644"/>
                <reference source="CERT-VN" ref_id="VU#692060" ref_url="http://www.kb.cert.org/vuls/id/692060"/>
                <reference source="CVE" ref_id="CVE-2006-0005" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0005"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1559" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1559"/>
                <description>Microsoft has released MS06-006 to address security issues in Windows Media Player as documented by CVE-2006-0005.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Npdsplay.dll is less than 3.0.2.629" negate="false" test_ref="oval:org.mitre.oval:tst:858"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:301" version="1" class="patch">
            <metadata>
                <title>MS06-008: Vulnerability in Web Client Service Could Allow Remote Code Execution (911927)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-008" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-008.mspx"/>
                <reference source="Microsoft" ref_id="KB911927" ref_url="http://support.microsoft.com/kb/911927"/>
                <reference source="Bugtraq ID" ref_id="16636" ref_url="http://www.securityfocus.com/bid/16636"/>
                <reference source="CERT-VN" ref_id="VU#388900" ref_url="http://www.kb.cert.org/vuls/id/388900"/>
                <reference source="CVE" ref_id="CVE-2006-0013" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0013"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1602" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1602"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:683" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:683"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1547" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1547"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1220" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1220"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:716" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:716"/>
                <description>Microsoft has released MS06-008 to address security issues in the operating system as documented by CVE-2006-0013.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of webclnt.dll is less than 5.1.2600.2821 (XP,SP2)" negate="false" test_ref="oval:org.mitre.oval:tst:830"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:341" version="1" class="patch">
            <metadata>
                <title>MS06-014: Vulnerability in the Microsoft Data Access Components (MDAC) Function Could Allow Code Execution (911562)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>MDAC</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-014" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-014.mspx"/>
                <reference source="Microsoft" ref_id="KB911562" ref_url="http://support.microsoft.com/kb/911562"/>
                <reference source="BID" ref_id="17462" ref_url="http://www.securityfocus.com/brefId/17462"/>
                <reference source="CERT" ref_id="VU#234812" ref_url="http://www.kb.cert.org/vuls/refId/234812"/>
                <reference source="CVE" ref_id="CVE-2006-0003" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0003"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1204" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1204"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1511" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1511"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1778" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1778"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1323" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1323"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1742" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1742"/>
                <description>Microsoft has released MS06-014 to address security issues in MDAC as documented by CVE-2006-0003.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of msadco.dll is less than 2.81.1124.0" negate="false" test_ref="oval:org.mitre.oval:tst:1079"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:351" version="1" class="patch">
            <metadata>
                <title>MS06-015: Vulnerability in Windows Explorer Could Allow Remote Code Execution (908531)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-015" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-015.mspx"/>
                <reference source="Microsoft" ref_id="KB908531" ref_url="http://support.microsoft.com/kb/908531"/>
                <reference source="BID" ref_id="17464" ref_url="http://www.securityfocus.com/brefId/17464"/>
                <reference source="CERT" ref_id="VU#641460" ref_url="http://www.kb.cert.org/vuls/refId/641460"/>
                <reference source="CVE" ref_id="CVE-2006-0012" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0012"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1448" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1448"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1764" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1764"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1679" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1679"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1743" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1743"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1191" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1191"/>
                <description>Microsoft has released MS06-015 to address security issues in the operating system as documented by CVE-2006-0012.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of shell32.dll is less than 6.0.2900.2869" negate="false" test_ref="oval:org.mitre.oval:tst:925"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:371" version="1" class="patch">
            <metadata>
                <title>MS06-017: Vulnerability in Microsoft FrontPage Server Extensions Could Allow Cross-Site Scripting (917627)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>FrontPage Server Extensions</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-017" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-017.mspx"/>
                <reference source="Microsoft" ref_id="KB917627" ref_url="http://support.microsoft.com/kb/917627"/>
                <reference source="Bugtraq ID" ref_id="17452" ref_url="http://www.securityfocus.com/bid/17452"/>
                <reference source="CVE" ref_id="CVE-2006-0015" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0015"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1748" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1748"/>
                <description>Microsoft has released MS06-017 to address security issues in FrontPage Server Extensions as documented by CVE-2006-0015.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of fpadmdll.dll is less than 10.0.6790.0" negate="false" test_ref="oval:org.mitre.oval:tst:744"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:400" version="2" class="patch">
            <metadata>
                <title>MS08-030: Vulnerability in Bluetooth Stack Could Allow Remote Code Execution (951376)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-1453" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1453"/>
                <reference source="Microsoft" ref_id="MS08-030" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-030.mspx"/>
                <reference source="Microsoft" ref_id="KB951376" ref_url="http://support.microsoft.com/kb/951376"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4730" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4730"/>
                <description>Microsoft has released MS08-030 to address security issues in Internet Explorer as documented by CVE-2008-1453.</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Bthport.sys does exist" test_ref="oval:org.mitre.oval:tst:7805"/>
                <criteria operator="OR">
                    <criteria operator="AND" comment="Windows XP (32-bit) SP2">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <criterion comment="the version of Bthport.sys is less than 5.1.2600.3351" test_ref="oval:org.mitre.oval:tst:7093"/>
                    </criteria>
                    <criteria operator="AND" comment="Windows XP (64-bit) SP2">
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <criterion comment="the version of Bthport.sys is less than 5.2.3790.4274" test_ref="oval:gov.nist.fdcc.patch:tst:115281"/>
                    </criteria>
                    <criteria operator="AND" comment="Windows XP Service Pack 3">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <criterion comment="the version of Bthport.sys is less than 5.1.2600.5580" test_ref="oval:org.mitre.oval:tst:8009"/>
                    </criteria>
                    <criteria operator="AND" comment="Windows Vista Service Pack 1">
                        <criteria operator="OR">
                            <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                            <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        </criteria>
                        <criterion comment="the version of Bthport.sys is less than 6.0.6001.18064" test_ref="oval:org.mitre.oval:tst:7491"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:402" version="1" class="patch">
            <metadata>
                <title>MS08-032: Cumulative Security Update of ActiveX Kill Bits (950760)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS08-032" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx"/>
                <reference source="Microsoft" ref_id="KB950760" ref_url="http://support.microsoft.com/kb/950760"/>
                <reference source="CVE" ref_id="CVE-2007-0675" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0675"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5489" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5489"/>
                <description>Microsoft has released MS08-032 to address security issues in Internet Explorer as documented by CVE-2007-0675.</description>
            </metadata>
            <criteria operator="AND">
                <criteria operator="OR">
                    <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                    <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                </criteria>
                <criteria operator="OR">
                    <criterion comment="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{40F23EB7-B397-4285-8F3C-AACE4FA40309}!Compatibility Flags does not exist" test_ref="oval:org.mitre.oval:tst:7937"/>
                    <criterion comment="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{40F23EB7-B397-4285-8F3C-AACE4FA40309}!Compatibility Flags is not equal to 0x00000400" test_ref="oval:org.mitre.oval:tst:7734"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:405" version="1" class="patch">
            <metadata>
                <title>MS08-036: Vulnerabilities in Pragmatic General Multicast (PGM) Could Allow Denial of Service (950762)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS08-036" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-036.mspx"/>
                <reference source="Microsoft" ref_id="KB950762" ref_url="http://support.microsoft.com/kb/950762"/>
                <reference source="CVE" ref_id="CVE-2008-1440" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1440"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5604" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5604"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5473" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5473"/>
                <description>Microsoft has released MS08-036 to address security issues in Internet Explorer as documented by CVE-2008-1440 and CVE-2008-1441.</description>
            </metadata>
            <criteria>
                <criteria operator="OR">
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <criterion comment="The version of Rmcast.sys is less than 5.1.2600.3369." test_ref="oval:org.mitre.oval:tst:8091"/>
                    </criteria>
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <criterion comment="The version of Rmcast.sys is less than 5.1.2600.5598." test_ref="oval:org.mitre.oval:tst:7565"/>
                    </criteria>
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <criterion comment="The version of Rmcast.sys is less than 5.2.3790.4290." test_ref="oval:org.mitre.oval:tst:7634"/>
                    </criteria>
                    <criteria operator="AND">
                        <criteria operator="OR">
                            <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                            <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                            <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                            <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        </criteria>
                        <criterion comment="The version of Rmcast.sys is greater than or equal to 6.0.6001.22000." test_ref="oval:gov.nist.fdcc.patch:tst:115268"/>
                        <criterion comment="The version of Rmcast.sys is less than 6.0.6001.22176." test_ref="oval:gov.nist.fdcc.patch:tst:115269"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:431" version="1" class="patch">
            <metadata>
                <title>MS07-031: Vulnerability in the Windows Schannel Security Package Could Allow Remote Code Execution (935840)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-031" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-031.mspx"/>
                <reference source="Microsoft" ref_id="KB935840" ref_url="http://support.microsoft.com/kb/935840"/>
                <reference source="CVE" ref_id="CVE-2007-2218" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2218"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1895" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1895"/>
                <description>Microsoft has released MS07-031 to address security issues in Operating System as documented by CVE-2007-2218.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of schannel.dll is less than 5.1.2600.3126" test_ref="oval:org.mitre.oval:tst:3933"/>
                </criteria>
                <criteria comment="Windows XP (64-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of schannel.dll is less than 5.2.3790.4068" test_ref="oval:org.mitre.oval:tst:3754"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:449" version="1" class="patch">
            <metadata>
                <title>MS07-040: Vulnerabilities in .NET Framework Could Allow Remote Code Execution (931212)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>.NET Framework</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-040" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms07-040.mspx"/>
                <reference source="Microsoft" ref_id="KB931212" ref_url="http://support.microsoft.com/kb/931212"/>
                <reference source="CVE" ref_id="CVE-2007-0041" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0041"/>
                <reference source="CVE" ref_id="CVE-2007-0042" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0042"/>
                <reference source="CVE" ref_id="CVE-2007-0043" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0043"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2070" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2070"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2093" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2093"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1873" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1873"/>
                <description>Microsoft has released MS07-040 to address security issues in .NET Framework as documented by CVE-2007-0041, CVE-2007-0042, and CVE-2007-0043.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment=".NET 1.0 Service Pack 3 is Installed" definition_ref="oval:org.mitre.oval:def:2136"/>
                    <criterion comment="System.web.dll version is less than 1.0.3705.6060" test_ref="oval:org.mitre.oval:tst:4154"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment=".NET 1.1 Service Pack 1 is Installed" definition_ref="oval:org.mitre.oval:def:1834"/>
                    <criterion comment="System.web.dll version is less than 1.1.4322.2407" test_ref="oval:org.mitre.oval:tst:3325"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment=".NET 2.0 is Installed" definition_ref="oval:org.mitre.oval:def:1934"/>
                    <criterion comment="System.web.dll version is less than 2.0.50727.832" test_ref="oval:org.mitre.oval:tst:3378"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:450" version="1" class="patch">
            <metadata>
                <title>MS07-041: Vulnerability in Microsoft Internet Information Services Could Allow Remote Code Execution (939373)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>IIS</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-041" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms07-041.mspx"/>
                <reference source="Microsoft" ref_id="KB939373" ref_url="http://support.microsoft.com/kb/939373"/>
                <reference source="BID" ref_id="15921" ref_url="http://www.securityfocus.com/bid/15921"/>
                <reference source="CVE" ref_id="CVE-2005-4360" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4360"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1703" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1703"/>
                <description>Microsoft has released MS07-041 to address security issues in IIS as documented by CVE-2005-4360.</description>
            </metadata>
            <criteria>
                <criteria comment="Windows XP SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                    <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                    <criterion comment="w3svc.dll version is less than 5.1.2600.3163" test_ref="oval:org.mitre.oval:tst:4030"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:464" version="1" class="patch">
            <metadata>
                <title>MS07-047: Vulnerabilities in Windows Media Player Could Allow Remote Code Execution (936782)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Media Player</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-047" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-047.mspx"/>
                <reference source="Microsoft" ref_id="KB936782" ref_url="http://support.microsoft.com/kb/936782"/>
                <reference source="CVE" ref_id="CVE-2007-3035" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3035"/>
                <reference source="CVE" ref_id="CVE-2007-3037" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3037"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2207" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2207"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1352" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1352"/>
                <description>Microsoft has released MS07-047 to address security issues in Windows Media Player as documented by CVE-2007-3035 and CVE-2007-3037.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="OR">
                    <criteria comment="Media Playa v9">
                        <extend_definition comment="Windows Media Player v9 is installed" definition_ref="oval:org.mitre.oval:def:2147"/>
                        <criterion test_ref="oval:org.mitre.oval:tst:3271" comment="the version of Wmp.dll is less than 9.0.0.3354"/>
                    </criteria>
                    <criteria comment="Media Playa v10 on XP">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Windows Media Player v10 is installed" definition_ref="oval:org.mitre.oval:def:2172"/>
                        <criterion test_ref="oval:org.mitre.oval:tst:4138" comment="the version of Wmp.dll is less than 10.0.0.4058"/>
                    </criteria>
                    <criteria comment="Media Playa v11 on XP">
                        <extend_definition comment="Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Windows Media Player v11 is installed" definition_ref="oval:org.mitre.oval:def:2126"/>
                        <criterion test_ref="oval:org.mitre.oval:tst:4010" comment="the version of Wmp.dll is less than 11.0.5721.5230"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:482" version="1" class="patch">
            <metadata>
                <title>MS07-053: Vulnerability in Windows Services for UNIX Could Allow Elevation of Privilege (939778)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-053" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-053.mspx"/>
                <reference source="Microsoft" ref_id="KB939778" ref_url="http://support.microsoft.com/kb/939778"/>
                <reference source="CVE" ref_id="CVE-2007-3036" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3036"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1275" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1275"/>
                <description>Microsoft has released MS07-053 to address security issues in Operating System as documented by CVE-2007-3036.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criterion comment="POSIX is enabled" test_ref="oval:org.mitre.oval:tst:609"/>
                    <criteria operator="OR">
                        <criteria operator="AND" comment="UNIX 3.0 version on Windows XP SP2">
                            <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                            <criterion comment="the version of psxss.exe is less than 7.0.1701.46" test_ref="oval:org.mitre.oval:tst:3240"/>
                            <criteria operator="AND" comment="The major version of Psxss.exe 7.">
                                <criterion comment="the version of psxss.exe is greater than or equal to 7." test_ref="oval:org.mitre.oval:tst:3242"/>
                                <criterion comment="The version of Psxss.exe is less than 8." test_ref="oval:org.mitre.oval:tst:3405"/>
                            </criteria>
                        </criteria>
                        <criteria operator="AND" comment="UNIX 3.5 version on Windows XP SP2">
                            <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                            <criterion comment="the version of psxss.exe is less than 8.0.1969.58" test_ref="oval:org.mitre.oval:tst:4052"/>
                            <criterion comment="the version of psxss.exe starts with 8" test_ref="oval:org.mitre.oval:tst:3247"/>
                            <criteria operator="AND" comment="The major version of Psxss.exe 8.">
                                <criterion comment="the version of psxss.exe is greater than or equal to 8." test_ref="oval:org.mitre.oval:tst:3247"/>
                                <criterion comment="The version of Psxss.exe is less than 9." test_ref="oval:org.mitre.oval:tst:3845"/>
                            </criteria>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:483" version="1" class="patch">
            <metadata>
                <title>MS07-054: Vulnerability in MSN Messenger and Windows Live Messenger Could Allow Remote Code Execution (942099)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>MSN Messenger</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-054" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-054.mspx"/>
                <reference source="Microsoft" ref_id="KB942099" ref_url="http://support.microsoft.com/kb/942099"/>
                <reference source="CVE" ref_id="CVE-2007-2931" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2931"/>
                <reference source="BID" ref_id="25461" ref_url="http://www.securityfocus.com/bid/25461"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2063" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2063"/>
                <description>Microsoft has released MS07-054 to address security issues in MSN Messenger as documented by CVE-2007-2931.</description>
            </metadata>
            <criteria operator="AND" comment="MSN Messenger on Windows XP">
                <extend_definition comment="Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR">
                    <extend_definition comment="MSN Messenger 6.2 is installed" definition_ref="oval:org.mitre.oval:def:2187"/>
                    <extend_definition comment="MSN Messenger 7.0 is installed" definition_ref="oval:org.mitre.oval:def:2047"/>
                    <extend_definition comment="MSN Messenger 7.5 is installed" definition_ref="oval:org.mitre.oval:def:2087"/>
                    <extend_definition comment="MSN Messenger 8.0 is installed" definition_ref="oval:org.mitre.oval:def:2209"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:500" version="1" class="patch">
            <metadata>
                <title>MS07-055: Vulnerability in Kodak Image Viewer Could Allow Remote Code Execution (923810)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Kodak Image Viewer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-055" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-055.mspx"/>
                <reference source="Microsoft" ref_id="KB923810" ref_url="http://support.microsoft.com/kb/923810"/>
                <reference source="CVE" ref_id="CVE-2007-2217" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2217"/>
                <description>Microsoft has released MS07-055 to address security issues in their software as documented by CVE-2007-2217.</description>
            </metadata>
            <criteria operator="AND" comment="WinXP">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="kodakimg.exe version is less than 5.0.2195.7136" test_ref="oval:org.mitre.oval:tst:3517"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:516" version="1" class="patch">
            <metadata>
                <title>MS07-061: Vulnerability in Windows URI Handling Could Allow Remote Code Execution (943460)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-061" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-061.mspx"/>
                <reference source="Microsoft" ref_id="KB943460" ref_url="http://support.microsoft.com/kb/943460"/>
                <reference source="CVE" ref_id="CVE-2007-3896" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3896"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4581" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4581"/>
                <reference source="CERT-VN" ref_id="VU#403150" ref_url="http://www.kb.cert.org/vuls/id/403150"/>
                <description>Microsoft has released MS07-061 to address security issues in Operating System as documented by CVE-2007-3896.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of shell32.dll is less than 6.0.2900.3241" test_ref="oval:org.mitre.oval:tst:6859"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of shell32.dll is less than 6.0.3790.4184" test_ref="oval:org.mitre.oval:tst:6786"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:524" version="1" class="patch">
            <metadata>
                <title>MS07-065: Vulnerability in Message Queuing Could Allow Remote Code Execution (937894)</title>
                <affected family="windows"/>
                <reference source="Microsoft" ref_id="MS07-065" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-065.mspx"/>
                <reference source="Microsoft" ref_id="KB937894" ref_url="http://support.microsoft.com/kb/937894"/>
                <description>Microsoft has released MS07-065 to address security issues in their software as documented by .</description>
            </metadata>
            <criteria operator="AND" comment="WinXP,SP2">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="mqrt.dll version is less than 5.1.0.1105" test_ref="oval:org.mitre.oval:tst:6760"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:525" version="1" class="patch">
            <metadata>
                <title>MS07-067: Vulnerability in Macrovision Driver Could Allow Local Elevation of Privilege (944653)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Macrovision</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2007-5587" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5587"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4584" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4584"/>
                <reference source="BID" ref_id="26121" ref_url="http://www.securityfocus.com/bid/26121"/>
                <reference source="Microsoft" ref_id="MS07-067" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-067.mspx"/>
                <reference source="Microsoft" ref_id="KB944653" ref_url="http://support.microsoft.com/kb/944653"/>
                <description>Microsoft has released MS07-067 to address security issues in Macrovision as documented by CVE-2007-5587.</description>
            </metadata>
            <criteria operator="AND" comment="XP and S03">
                <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                <criterion comment="secdrv.sys version is less than 4.3.86.0" test_ref="oval:org.mitre.oval:tst:6816"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:526" version="1" class="patch">
            <metadata>
                <title>MS07-068: Vulnerability in Windows Media File Format Could Allow Remote Code Execution (941569 and 944275)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Media Player</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-068" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-068.mspx"/>
                <description>Microsoft has released MS07-068 to address security issues in their software as documented by .</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Wmvcore.dll for Windows Media Format 9.0 is installed." test_ref="oval:org.mitre.oval:tst:125"/>
                    <criterion comment="the version of wmasf.dll is less than 9.0.0.3267" test_ref="oval:org.mitre.oval:tst:6447"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Wmvcore.dll for Windows Media Format 9.5 is installed." test_ref="oval:org.mitre.oval:tst:115"/>
                    <criterion comment="the version of wmasf.dll is less than 10.0.0.4060" test_ref="oval:org.mitre.oval:tst:6402"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Wmvcore.dll for Windows Media Format 9.5 is installed." test_ref="oval:org.mitre.oval:tst:115"/>
                    <criterion comment="the version of wmasf.dll is less than 10.0.0.3811" test_ref="oval:gov.nist.fdcc.patch:tst:115277"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                    <criterion comment="Wmvcore.dll for Windows Media Format 11.0 is installed." test_ref="oval:org.mitre.oval:tst:6765"/>
                    <criterion comment="the version of wmasf.dll is less than 11.0.5721.5238" test_ref="oval:org.mitre.oval:tst:6614"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:531" version="1" class="patch">
            <metadata>
                <title>MS06-036: Vulnerability in DHCP Client Service Could Allow Remote Code Execution (914388)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>DHCP Client</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-036" ref_url="http://www.microsoft.com/technet/security/bulletin/ms06-036.mspx"/>
                <reference source="Microsoft" ref_id="KB914388" ref_url="http://support.microsoft.com/kb/914388"/>
                <reference source="Bugtraq ID" ref_id="18923" ref_url="http://www.securityfocus.com/bid/18923"/>
                <reference source="CERT-VN" ref_id="VU#257164" ref_url="http://www.kb.cert.org/vuls/id/257164"/>
                <reference source="CVE" ref_id="CVE-2006-2372" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2372"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:232" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:232"/>
                <description>Microsoft has released MS06-036 to address security issues in DHCP Client as documented by CVE-2006-2372.</description>
            </metadata>
            <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of dhcpcsvc.dll is less than 5.1.2600.2912" test_ref="oval:org.mitre.oval:tst:5"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:539" version="1" class="patch">
            <metadata>
                <title>MS08-001: Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (941644)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-001" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-001.mspx"/>
                <reference source="Microsoft" ref_id="KB941644" ref_url="http://support.microsoft.com/kb/941644"/>
                <reference source="BID" ref_id="27100" ref_url="http://www.securityfocus.com/bid/27100"/>
                <reference source="CERT-VN" ref_id="VU#115083" ref_url="http://www.kb.cert.org/vuls/id/115083"/>
                <reference source="CVE" ref_id="CVE-2007-0069" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0069"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5370" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5370"/>
                <description>Microsoft has released MS08-001 to address security issues in Operating System as documented by CVE-2007-0069.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of tcpip.sys is less than 5.1.2600.3244" test_ref="oval:org.mitre.oval:tst:7452"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of tcpip.sys is less than 5.2.3790.4179" test_ref="oval:org.mitre.oval:tst:7335"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:556" version="1" class="patch">
            <metadata>
                <title>MS08-003: Vulnerability in Active Directory Could Allow Denial of Service (946538)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-003" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-003.mspx"/>
                <reference source="Microsoft" ref_id="KB946538" ref_url="http://support.microsoft.com/kb/946538"/>
                <reference source="BID" ref_id="27638" ref_url="http://www.securityfocus.com/bid/27638"/>
                <reference source="CVE" ref_id="CVE-2008-0088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0088"/>
                <reference source="HP" ref_id="HPSBST02314" ref_url="http://marc.info/?l=bugtraq&amp;m=120361015026386&amp;w=2"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5181" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5181"/>
                <description>Microsoft has released MS08-003 to address security issues in Operating System as documented by CVE-2008-0088.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                <criterion comment="adamdsa.dll version is less than 1.1.3790.4188" test_ref="oval:org.mitre.oval:tst:7403"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:557" version="1" class="patch">
            <metadata>
                <title>MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege (942831)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>IIS</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-005" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-005.mspx"/>
                <reference source="Microsoft" ref_id="KB942831" ref_url="http://support.microsoft.com/kb/942831"/>
                <reference source="BID" ref_id="27101" ref_url="http://www.securityfocus.com/bid/27101"/>
                <reference source="CVE" ref_id="CVE-2008-0074" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0074"/>
                <reference source="HP" ref_id="HPSBST02314" ref_url="http://marc.info/?l=bugtraq&amp;m=120361015026386&amp;w=2"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5389" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5389"/>
                <description>Microsoft has released MS08-005 to address security issues in IIS as documented by CVE-2008-0074.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                    <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                    <criterion comment="the version of infocomm.dll is less than 6.0.2600.3290" test_ref="oval:org.mitre.oval:tst:7363"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft IIS 6.0 is installed" definition_ref="oval:org.mitre.oval:def:227"/>
                    <criterion comment="the version of infocomm.dll is less than 6.0.3790.4215" test_ref="oval:org.mitre.oval:tst:7802"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:558" version="1" class="patch">
            <metadata>
                <title>MS08-006: Vulnerability in Internet Information Services Could Allow Remote Code Execution (942830)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>IIS</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-006" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-006.mspx"/>
                <reference source="Microsoft" ref_id="KB942830" ref_url="http://support.microsoft.com/kb/942830"/>
                <reference source="BID" ref_id="27676" ref_url="http://www.securityfocus.com/bid/27676"/>
                <reference source="CVE" ref_id="CVE-2008-0075" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0075"/>
                <reference source="HP" ref_id="HPSBST02314" ref_url="http://marc.info/?l=bugtraq&amp;m=120361015026386&amp;w=2"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5308" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5308"/>
                <description>Microsoft has released MS08-006 to address security issues in IIS as documented by CVE-2008-0075.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                    <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                    <criterion comment="the version of asp51.dll is less than 5.1.2600.3291" test_ref="oval:org.mitre.oval:tst:7861"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft IIS 6.0 is installed" definition_ref="oval:org.mitre.oval:def:227"/>
                    <criterion comment="the version of asp.dll is less than 6.0.3790.4195" test_ref="oval:org.mitre.oval:tst:7785"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:559" version="1" class="patch">
            <metadata>
                <title>MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution (946026)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-007" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-007.mspx"/>
                <reference source="Microsoft" ref_id="KB946026" ref_url="http://support.microsoft.com/kb/946026"/>
                <reference source="BID" ref_id="27670" ref_url="http://www.securityfocus.com/bid/27670"/>
                <reference source="CVE" ref_id="CVE-2008-0080" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0080"/>
                <reference source="HP" ref_id="HPSBST02314" ref_url="http://marc.info/?l=bugtraq&amp;m=120361015026386&amp;w=2"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5381" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5381"/>
                <description>Microsoft has released MS08-007 to address security issues in Operating System as documented by CVE-2008-0080.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of mrxdav.sys is less than 5.1.2600.3276" test_ref="oval:org.mitre.oval:tst:7454"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of mrxdav.sys is less than 5.2.3790.4221" test_ref="oval:org.mitre.oval:tst:7633"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:560" version="1" class="patch">
            <metadata>
                <title>MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution (947890)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Visual Basic 6.0</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-008" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-008.mspx"/>
                <reference source="Microsoft" ref_id="KB947890" ref_url="http://support.microsoft.com/kb/947890"/>
                <reference source="BID" ref_id="27661" ref_url="http://www.securityfocus.com/bid/27661"/>
                <reference source="CVE" ref_id="CVE-2007-0065" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0065"/>
                <reference source="HP" ref_id="HPSBST02314" ref_url="http://marc.info/?l=bugtraq&amp;m=120361015026386&amp;w=2"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5388" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5388"/>
                <description>Microsoft has released MS08-008 to address security issues in Microsoft Visual Basic 6.0 as documented by CVE-2007-0065.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of oleaut32.dll is less than 5.1.2600.3266" test_ref="oval:org.mitre.oval:tst:7828"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of oleaut32.dll is less than 5.2.3790.4202" test_ref="oval:org.mitre.oval:tst:7548"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:602" version="1" class="patch">
            <metadata>
                <title>MS08-020: Vulnerability in DNS Client Could Allow Spoofing (945553)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-020" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-020.mspx"/>
                <reference source="Microsoft" ref_id="KB945553" ref_url="http://support.microsoft.com/kb/945553"/>
                <reference source="BID" ref_id="28553" ref_url="http://www.securityfocus.com/bid/28553"/>
                <reference source="CVE" ref_id="CVE-2008-0087" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0087"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5314" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5314"/>
                <description>Microsoft has released MS08-020 to address security issues in Operating System as documented by CVE-2008-0087.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Dnsapi.dll version is less than 5.1.2600.3316" test_ref="oval:org.mitre.oval:tst:7425"/>
                    <criterion comment="dnsrslvr.dlll version is less than 5.1.2600.3316" test_ref="oval:gov.nist.fdcc.patch:tst:115298"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Dnsapi.dll version is less than 5.2.3790.4238" test_ref="oval:org.mitre.oval:tst:6999"/>
                    <criterion comment="dnsrslvr.dlll version is less than 5.2.3790.4238" test_ref="oval:gov.nist.fdcc.patch:tst:115299"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:604" version="1" class="patch">
            <metadata>
                <title>MS08-022: Vulnerability in VBScript and JScript Scripting Engines Could Allow Remote Code Execution (944338)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-022" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-022.mspx"/>
                <reference source="Microsoft" ref_id="KB944338" ref_url="http://support.microsoft.com/kb/944338"/>
                <reference source="BID" ref_id="28551" ref_url="http://www.securityfocus.com/bid/28551"/>
                <reference source="CVE" ref_id="CVE-2008-0083" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0083"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5495" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5495"/>
                <description>Microsoft has released MS08-022 to address security issues in Operating System as documented by CVE-2008-0083.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                <criterion comment="Jscript.dll version is less than 5.6.0.8835" test_ref="oval:org.mitre.oval:tst:7025"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:631" version="1" class="patch">
            <metadata>
                <title>MS06-050: Vulnerabilities in Microsoft Windows Hyperlink Object Library Could Allow Remote Code Execution (920670)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-050" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-050.mspx"/>
                <reference source="Microsoft" ref_id="KB920670" ref_url="http://support.microsoft.com/kb/920670"/>
                <reference source="Bugtraq ID" ref_id="18500" ref_url="http://www.securityfocus.com/bid/18500"/>
                <reference source="CERT-VN" ref_id="VU#394444" ref_url="http://www.kb.cert.org/vuls/id/394444"/>
                <reference source="CERT-VN" ref_id="VU#683612" ref_url="http://www.kb.cert.org/vuls/id/683612"/>
                <reference source="CVE" ref_id="CVE-2006-3086" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3086"/>
                <reference source="CVE" ref_id="CVE-2006-3438" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3438"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:115" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:115"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:999" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:999"/>
                <description>Microsoft has released MS06-050 to address security issues in the operating system as documented by CVE-2006-3086 and CVE-2006-3438.</description>
            </metadata>
            <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Hlink.dll is less than 5.2.3790.2748" test_ref="oval:org.mitre.oval:tst:180"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:741" version="1" class="patch">
            <metadata>
                <title>MS04-043: Vulnerability in HyperTerminal Could Allow Code Execution (873339)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>HyperTerminal</product>
                </affected>
                <reference source="Microsoft" ref_id="MS04-043" ref_url="http://www.microsoft.com/technet/security/bulletin/MS04-043.mspx"/>
                <reference source="Microsoft" ref_id="KB873339" ref_url="http://support.microsoft.com/kb/873339"/>
                <reference source="CIAC" ref_id="p-056" ref_url="http://www.ciac.org/ciac/bulletins/p-056.shtml"/>
                <reference source="CVE" ref_id="CVE-2004-0568" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0568"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1603" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1603"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2545" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2545"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3138" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3138"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4741" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4741"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3973" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3973"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4508" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4508"/>
                <description>Microsoft has released MS04-043 to address security issues in HyperTerminal as documented by CVE-2004-0568.</description>
            </metadata>
            <criteria operator="AND">
                <criteria comment="Software section" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of hypertrm.dll is less than 5.1.2600.2563" negate="false" test_ref="oval:org.mitre.oval:tst:516"/>
                </criteria>
                <criteria comment="Configuration section" operator="OR">
                    <criterion comment="If key present hyperterminal will automatically open session files" negate="false" test_ref="oval:org.mitre.oval:tst:827"/>
                    <criterion comment="If the Hyperterminal client is registered as the default telnet client" negate="false" test_ref="oval:org.mitre.oval:tst:826"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:751" version="1" class="patch">
            <metadata>
                <title>MS04-044: Vulnerabilities in Windows Kernel and LSASS Could Allow Elevation of Privilege (885835)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Local Security Authority Subsystem Service (LSASS)</product>
                </affected>
                <reference source="Microsoft" ref_id="MS04-044" ref_url="http://www.microsoft.com/technet/security/bulletin/MS04-044.mspx"/>
                <reference source="Microsoft" ref_id="KB885835" ref_url="http://support.microsoft.com/kb/885835"/>
                <reference source="CVE" ref_id="CVE-2004-0893" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0893"/>
                <reference source="CVE" ref_id="CVE-2004-0894" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0894"/>
                <reference source="CIAC" ref_id="p-057" ref_url="http://www.ciac.org/ciac/bulletins/p-057.shtml"/>
                <reference source="BID" ref_id="11914" ref_url="http://www.securityfocus.com/brefId/11914"/>
                <reference source="BID" ref_id="11913" ref_url="http://www.securityfocus.com/brefId/11913"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:450" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:450"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4021" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4021"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2062" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2062"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4458" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4458"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3312" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3312"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:778" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:778"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1321" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1321"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3325" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3325"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1561" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1561"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1888" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1888"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4368" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4368"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2008" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2008"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1886" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1886"/>
                <description>Microsoft has released MS04-044 to address security issues in Local Security Authority Subsystem Service (LSASS) as documented by CVE-2004-0893 and CVE-2004-0894.</description>
            </metadata>
            <criteria>
                <criteria comment="Software section" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of lsasrv.dll is less than 5.1.2600.2525" negate="false" test_ref="oval:org.mitre.oval:tst:2623"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:791" version="1" class="patch">
            <metadata>
                <title>MS06-057: Vulnerability in Windows Explorer Could Allow Remote Execution (923191)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-057" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-057.mspx"/>
                <reference source="Microsoft" ref_id="KB923191" ref_url="http://support.microsoft.com/kb/923191"/>
                <reference source="CVE" ref_id="CVE-2006-3730" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3730"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:339" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:339"/>
                <description>Microsoft has released MS06-057 to address security issues in the operating system as documented by CVE-2006-3730.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Comctl32.dll is less than 5.82.2900.2982" test_ref="oval:org.mitre.oval:tst:54"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:861" version="1" class="patch">
            <metadata>
                <title>MS06-064: Vulnerabilities in TCP/IP IPv6 Could Allow Denial of Service (922819)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-064" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-064.mspx"/>
                <reference source="Microsoft" ref_id="KB922819" ref_url="http://support.microsoft.com/kb/922819"/>
                <reference source="CVE" ref_id="CVE-2004-0230" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0230"/>
                <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
                <reference source="CVE" ref_id="CVE-2005-0688" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0688"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:270" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:270"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:53" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:53"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:482" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:482"/>
                <description>Microsoft has released MS06-064 to address security issues in the operating system as documented by CVE-2004-0230, CVE-2004-0790, and CVE-2005-0688.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Tcpip6.sys is less than 5.1.2600.2975" test_ref="oval:org.mitre.oval:tst:86"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:871" version="1" class="patch">
            <metadata>
                <title>MS06-065: Vulnerability in Windows Object Packager Could Allow Remote Execution (924496)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-065" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-065.mspx"/>
                <reference source="Microsoft" ref_id="KB924496" ref_url="http://support.microsoft.com/kb/924496"/>
                <reference source="CVE" ref_id="CVE-2006-4692" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4692"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:496" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:496"/>
                <description>Microsoft has released MS06-065 to address security issues in the operating system as documented by CVE-2006-4692.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Shdocvw.dll is less than 6.0.2900.2987" test_ref="oval:org.mitre.oval:tst:48"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:881" version="1" class="patch">
            <metadata>
                <title>MS06-066: Vulnerabilities in Client Service for NetWare Could Allow Remote Code Execution (923980)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>NetWare</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-066" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-066.mspx"/>
                <reference source="Microsoft" ref_id="KB923980" ref_url="http://support.microsoft.com/kb/923980"/>
                <reference source="CVE" ref_id="CVE-2006-4688" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4688"/>
                <reference source="CVE" ref_id="CVE-2006-4689" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4689"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:413" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:413"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:404" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:404"/>
                <description>Microsoft has released MS06-066 to address security issues in NetWare as documented by CVE-2006-4688 and CVE-2006-4689.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of nwrdr.sys is less than 5.1.2600.3015" test_ref="oval:org.mitre.oval:tst:75"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:901" version="1" class="patch">
            <metadata>
                <title>MS06-068: Vulnerability in Microsoft Agent Could Allow Remote Code Execution (920213)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Internet Explorer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-068" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-068.mspx"/>
                <reference source="Microsoft" ref_id="KB920213" ref_url="http://support.microsoft.com/kb/920213"/>
                <reference source="CVE" ref_id="CVE-2006-3445" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3445"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:154" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:154"/>
                <description>Microsoft has released MS06-068 to address security issues in Microsoft Internet Explorer as documented by CVE-2006-3445.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of agentdpv.dll is less than 2.0.0.3424" test_ref="oval:org.mitre.oval:tst:195"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:921" version="1" class="patch">
            <metadata>
                <title>MS06-070: Vulnerability in Workstation Service Could Allow Remote Code Execution (924270)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS06-070" ref_url="http://www.microsoft.com/technet/security/bulletin/MS06-070.mspx"/>
                <reference source="Microsoft" ref_id="KB924270" ref_url="http://support.microsoft.com/kb/924270"/>
                <reference source="CVE" ref_id="CVE-2006-4691" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4691"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:908" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:908"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:607" ref_url="http://oval.mitre.org/repository/data/getDef?oval:org.mitre.oval:def:607"/>
                <description>Microsoft has released MS06-070 to address security issues in the operating system as documented by CVE-2006-4691.</description>
            </metadata>
            <criteria comment="WinXP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of wkssvc.dll is less than 5.1.2600.2976" test_ref="oval:org.mitre.oval:tst:113"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:1784" version="2" class="patch">
            <metadata>
                <title>MS07-050: Vulnerability in Vector Markup Language Could Allow Remote Code Execution (938127)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>Microsoft Internet Explorer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS07-050" ref_url="http://www.microsoft.com/technet/security/bulletin/MS07-050.mspx"/>
                <reference source="Microsoft" ref_id="938127" ref_url="http://support.microsoft.com/kb/938127"/>
                <reference source="CVE" ref_id="CVE-2007-1749" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1749"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1784" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1784"/>
                <description>Microsoft has released MS07-050 to address security issues in the Vector Markup Language (VML) implementation in Windows as documented by CVE-2007-1749.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="IE 6 on Win XP SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition definition_ref="oval:org.mitre.oval:def:563" comment="Internet Explorer 6 is installed"/>
                    <criterion comment="the version of vgx.dll is less than 6.0.2900.3164" test_ref="oval:org.mitre.oval:tst:3856"/>
                </criteria>
                <criteria comment="IE 7 on Win XP SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition definition_ref="oval:org.mitre.oval:def:627" comment="Internet Explorer 7 is installed"/>
                    <criterion comment="the version of vgx.dll is less than 7.0.6000.20628" test_ref="oval:org.mitre.oval:tst:4182"/>
                </criteria>
                <criteria comment="IE 6 on Win XP SP2 (64-bit)" operator="AND">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Internet Explorer 6 is installed" definition_ref="oval:org.mitre.oval:def:563"/>
                    <criterion comment="the version of vgx.dll is less than 6.0.3790.4106" test_ref="oval:org.mitre.oval:tst:3422"/>
                </criteria>
                <criteria comment="IE 7 on Win XP SP2 (64-bit)" operator="AND">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition definition_ref="oval:org.mitre.oval:def:627" comment="Internet Explorer 7 is installed"/>
                    <criterion comment="the version of vgx.dll is less than 7.0.6000.20628" test_ref="oval:org.mitre.oval:tst:4182"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:1911" version="1" class="patch">
            <metadata>
                <title>MS05-045: Vulnerability in Network Connection Manager Could Allow Denial of Service (905414)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS05-045" ref_url="http://www.microsoft.com/technet/security/bulletin/MS05-045.mspx"/>
                <reference source="Microsoft" ref_id="KB905414" ref_url="http://support.microsoft.com/kb/905414"/>
                <reference source="Bugtraq ID" ref_id="14260" ref_url="http://www.securityfocus.com/bid/14260"/>
                <reference source="CVE" ref_id="CVE-2005-2307" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2307"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:786" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:786"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1532" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1532"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1254" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1254"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1289" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1289"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1250" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1250"/>
                <description>Microsoft has released MS05-045 to address security issues in the operating system as documented by CVE-2005-2307.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="netman.dll is less than 5.1.2600.2743" negate="false" test_ref="oval:org.mitre.oval:tst:879"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:5578" version="1" class="patch">
            <metadata>
                <title>MS08-028: Vulnerability in Microsoft Jet Database Engine Could Allow Remote Code Execution (950749)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Jet 4.0 Database Engine</product>
                </affected>
                <reference source="Microsoft" ref_id="MS08-028" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-028.mspx"/>
                <reference source="Microsoft" ref_id="KB950749" ref_url="http://support.microsoft.com/kb/950749"/>
                <reference source="CVE" ref_id="CVE-2007-6026" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6026"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5578" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5578"/>
                <description>Microsoft has released MS08-028 to address security issues in the Microsoft Jet Database Engine (Jet) in Windows as documented by CVE-2007-6026.</description>
            </metadata>
            <criteria operator="AND" comment="Windows XP">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of Msjet40.dll is less than 4.0.9511.0" test_ref="oval:org.mitre.oval:tst:7888"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11432" version="1" class="patch">
            <metadata>
                <title>MS08-037: Vulnerabilities in DNS Could Allow Spoofing (953230)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-1447" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447"/>
                <reference source="CVE" ref_id="CVE-2008-1454" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1454"/>
                <reference source="Microsoft" ref_id="MS08-037" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-037.mspx"/>
                <reference source="Microsoft" ref_id="KB953230" ref_url="http://support.microsoft.com/kb/953230"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5725" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5725"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5380" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5380"/>
                <description>Microsoft has released MS08-037 to address security issues in Windows 2000, XP, Server 2003, and Server 2008 as documented by CVE-2008-1447 and CVE-2008-1454.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="dnsapi.dll version is less than 5.1.2600.3394" test_ref="oval:org.mitre.oval:tst:8137"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="dnsapi.dll version is less than 5.1.2600.5625" test_ref="oval:org.mitre.oval:tst:8530"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="dnsapi.dll version is less than 5.2.3790.4318" test_ref="oval:org.mitre.oval:tst:8047"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <criterion comment="dns.exe version is less than 6.0.6001.22192" test_ref="oval:org.mitre.oval:tst:8558"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11441" version="1" class="patch">
            <metadata>
                <title> MS08-046: Vulnerability in Microsoft Windows Image Color Management System Could Allow Remote Code Execution (952954)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-2245" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2245"/>
                <reference source="Microsoft" ref_id="MS08-046" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-046.mspx"/>
                <reference source="Microsoft" ref_id="KB952954" ref_url="http://support.microsoft.com/kb/952954"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5923" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5923"/>
                <description>Microsoft has released MS08-046 to address security issues in Microsoft Windows 2000, Windows XP and Windows Server 2003 as documented by CVE-2008-2245.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of mscms.dll is less than 5.1.2600.3396" test_ref="oval:org.mitre.oval:tst:8739"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of mscms.dll is less than 5.1.2600.5627" test_ref="oval:org.mitre.oval:tst:8660"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of mscms.dll is less than 5.2.3790.4320" test_ref="oval:org.mitre.oval:tst:9047"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11443" version="1" class="patch">
            <metadata>
                <title>MS08-048: Security Update for Outlook Express and Windows Mail (951066)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Microsoft Outlook Express</product>
                    <product>Microsoft Mail</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-1448" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1448"/>
                <reference source="Microsoft" ref_id="MS08-048" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-048.mspx"/>
                <reference source="Microsoft" ref_id="KB951066" ref_url="http://support.microsoft.com/kb/951066"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5886" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5886"/>
                <description>Microsoft has released MS08-048 to address security issues in Windows XP and Windows Vista, Windows Server 2003, and Windows Server 2008 as documented by CVE-2008-1448.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="Outlook Express 6 on Win XP SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of inetcomm.dll is less than 6.0.2900.3350" test_ref="oval:org.mitre.oval:tst:8951"/>
                </criteria>
                <criteria operator="AND" comment="Outlook Express 6 on Win XP SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of inetcomm.dll is less than 6.0.2900.5579" test_ref="oval:org.mitre.oval:tst:8248"/>
                </criteria>
                <criteria operator="AND" comment="Outlook Express 6 on Win XP SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP SP2 (64-bit) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of inetcomm.dll is less than 6.0.3790.4325" test_ref="oval:org.mitre.oval:tst:9185"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <extend_definition comment="Microsoft Windows Mail is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115234"/>
                    <criterion comment="the version of inetcomm.dll is less than 6.0.6001.18049" test_ref="oval:org.mitre.oval:tst:9051"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11444" version="1" class="patch">
            <metadata>
                <title>MS08-049: Vulnerabilities in Event System Could Allow Remote Code Execution (950974)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-1456" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1456"/>
                <reference source="CVE" ref_id="CVE-2008-1457" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1457"/>
                <reference source="Microsoft" ref_id="MS08-049" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx"/>
                <reference source="Microsoft" ref_id="KB950974" ref_url="http://support.microsoft.com/kb/950974"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5630" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5630"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6095" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6095"/>
                <description>Microsoft has released MS08-049 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-1456 and CVE-2008-1457.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of es.dll is less than 2001.12.4414.320" test_ref="oval:org.mitre.oval:tst:9013"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of es.dll is less than 2001.12.4414.706" test_ref="oval:org.mitre.oval:tst:9019"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of es.dll is less than 2001.12.4720.4282" test_ref="oval:org.mitre.oval:tst:8200"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <criterion comment="the version of es.dll is less than 2001.12.6931.18057" test_ref="oval:org.mitre.oval:tst:8968"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11445" version="1" class="patch">
            <metadata>
                <title>MS08-050: Vulnerability in Windows Messenger Could Allow Information Disclosure (955702)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Messenger 4.7</product>
                    <product>Windows Messenger 5.1</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-0082" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0082"/>
                <reference source="Microsoft" ref_id="MS08-050" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-050.mspx"/>
                <reference source="Microsoft" ref_id="KB955702" ref_url="http://support.microsoft.com/kb/955702"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5995" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5995"/>
                <description>Microsoft has released MS08-050 to address security issues in Microsoft Windows 2000 and Windows XP, and Windows Server 2003 as documented by CVE-2008-0082.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Windows Messenger 4.7 is installed" definition_ref="oval:org.mitre.oval:def:6101"/>
                    <criterion comment="the version of msgsc.dll is less than 4.7.0.3002" test_ref="oval:org.mitre.oval:tst:9100"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Windows Messenger 5.1 is installed" definition_ref="oval:org.mitre.oval:def:5691"/>
                    <criterion comment="the version of msgsc.dll is less than 5.1.0715" test_ref="oval:org.mitre.oval:tst:8944"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11447" version="1" class="patch">
            <metadata>
                <title>MS08-054: Vulnerability in Windows Media Player Could Allow Remote Code Execution (954154)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Microsoft Media Player</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-2253" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2253"/>
                <reference source="Microsoft" ref_id="MS08-054" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-054.mspx"/>
                <reference source="Microsoft" ref_id="KB954154" ref_url="http://support.microsoft.com/kb/954154"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5615" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5615"/>
                <description>Microsoft has released MS08-054 to address security issues in Windows Media Player 11 as documented by CVE-2008-2253.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit or 64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:org.mitre.oval:def:2126"/>
                    <criterion comment="Wmpeffects.dll version is less than 11.0.5721.5252" test_ref="oval:org.mitre.oval:tst:9036"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:org.mitre.oval:def:2126"/>
                    <criterion comment="Wmpeffects.dll version is less than 11.0.6001.7002" test_ref="oval:org.mitre.oval:tst:8662"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11449" version="1" class="patch">
            <metadata>
                <title>MS08-053: Vulnerability in Windows Media Encoder 9 Could Allow Remote Code Execution (954156)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Microsoft Media Encoder</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-3008" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3008"/>
                <reference source="Microsoft" ref_id="MS08-053" ref_url="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx"/>
                <reference source="Microsoft" ref_id="KB954156" ref_url="http://support.microsoft.com/kb/954156"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6018" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6018"/>
                <description>Microsoft has released MS08-053 to address security issues in Microsoft Windows 2000, Windows XP, and Windows Vista, Windows Server 2003 and Windows Server 2008 as documented by CVE-2008-3008.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                    </criteria>
                    <criterion comment="Wmex.dll version is greater than or equal to  9.0.0.0" test_ref="oval:org.mitre.oval:tst:8780"/>
                    <criterion comment="Wmex.dll version is less than to  10.0.0.0" test_ref="oval:org.mitre.oval:tst:8858"/>
                    <criterion comment="Wmex.dll version is less than 9.0.0.3359" test_ref="oval:org.mitre.oval:tst:8469"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <criterion comment="Wmex.dll version is greater than or equal to  10.0.0.0" test_ref="oval:org.mitre.oval:tst:8587"/>
                    <criterion comment="Wmex.dll version is less than to  10.0.0.0" test_ref="oval:org.mitre.oval:tst:8887"/>
                    <criterion comment="Wmex.dll version is less than 10.0.0.3817" test_ref="oval:org.mitre.oval:tst:9030"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11501" version="1" class="patch">
            <metadata>
                <title>MS08-061: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (954211)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-2250 " ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2250"/>
                <reference source="CVE" ref_id="CVE-2008-2251 " ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2251"/>
                <reference source="CVE" ref_id="CVE-2008-2252 " ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2252"/>
                <reference source="Microsoft" ref_id="MS08-061" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS08-061.mspx"/>
                <reference source="Microsoft" ref_id="KB954211" ref_url="http://support.microsoft.com/kb/954211"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5902" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5902"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6010" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6010"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6045" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6045"/>
                <description>Microsoft has released MS08-061 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-2250, CVE-2008-2251, and CVE-2008-2252.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Win32k.sys version is less than 5.1.2600.3446" test_ref="oval:org.mitre.oval:tst:8612"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Win32k.sys version is less than 5.1.2600.5676" test_ref="oval:org.mitre.oval:tst:9293"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Win32k.sys version is less than 5.2.3790.4375" test_ref="oval:org.mitre.oval:tst:9112"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Win32k.sys version is less than 6.0.6001.18141" test_ref="oval:org.mitre.oval:tst:8928"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11502" version="2" class="patch">
            <metadata>
                <title>MS08-062: Vulnerability in Windows Internet Printing Service Could Allow Remote Code Execution (953155)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-1446 " ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1446"/>
                <reference source="Microsoft" ref_id="MS08-062" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx"/>
                <reference source="Microsoft" ref_id="KB953155" ref_url="http://support.microsoft.com/kb/953155"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5764" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5764"/>
                <description>Microsoft has released MS08-062 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-1446.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="IIS is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115279"/>
                    <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                    <criterion comment="Win32spl.dll version is less than 5.1.2600.3435" test_ref="oval:org.mitre.oval:tst:9281"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="IIS is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115279"/>
                    <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                    <criterion comment="Win32spl.dll version is less than 5.1.2600.5664" test_ref="oval:org.mitre.oval:tst:9352"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="IIS is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115279"/>
                    <criterion comment="Win32spl.dll version is less than 5.2.3790.4371" test_ref="oval:org.mitre.oval:tst:8857"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <extend_definition comment="IIS is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115279"/>
                    <criterion comment="Win32spl.dll version is less than 6.0.6001.18119" test_ref="oval:org.mitre.oval:tst:9011"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11505" version="1" class="patch">
            <metadata>
                <title>MS08-066: Vulnerability in the Microsoft Ancillary Function Driver Could Allow Elevation of Privilege (956803)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-3464" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3464"/>
                <reference source="Microsoft" ref_id="MS08-066" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS08-066.mspx"/>
                <reference source="Microsoft" ref_id="KB956803" ref_url="http://support.microsoft.com/kb/956803"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5825" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5825"/>
                <description>Microsoft has released MS08-066 to address security issues in Windows XP and Windows Server 2003 as documented by CVE-2008-3464.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="The version of afd.sys is less than 5.1.2600.3427." test_ref="oval:org.mitre.oval:tst:9248"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="The version of afd.sys is less than 5.1.2600.5657." test_ref="oval:org.mitre.oval:tst:9065"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="The version of afd.sys is less than 5.2.3790.4355." test_ref="oval:org.mitre.oval:tst:9331"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11507" version="1" class="patch">
            <metadata>
                <title>MS08-067: Vulnerability in Server Service Could Allow Remote Code Execution (958644)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-4250" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4250"/>
                <reference source="Microsoft" ref_id="MS08-067" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx"/>
                <reference source="Microsoft" ref_id="KB958644" ref_url="http://support.microsoft.com/kb/958644"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6093" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6093"/>
                <description>Microsoft has released MS08-061 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-4250</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Netapi32.dll version is less than 5.1.2600.3462" test_ref="oval:org.mitre.oval:tst:9314"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Netapi32.dll version is less than 5.1.2600.5694" test_ref="oval:org.mitre.oval:tst:9266"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Netapi32.dll version is less than 5.2.3790.4392" test_ref="oval:org.mitre.oval:tst:9058"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criteria operator="OR">
                        <criteria operator="AND">
                            <criterion comment="Netapi32.dll version is greater than 6.0.6001.18000" test_ref="oval:org.mitre.oval:tst:9195"/>
                            <criterion comment="Netapi32.dll version is less than 6.0.6001.18157" test_ref="oval:org.mitre.oval:tst:9140"/>
                        </criteria>
                        <criteria operator="AND">
                            <criterion comment="Netapi32.dll version is greater than 6.0.6001.22000" test_ref="oval:org.mitre.oval:tst:8394"/>
                            <criterion comment="Netapi32.dll version is less than 6.0.6001.22288" test_ref="oval:org.mitre.oval:tst:9090"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11510" version="1" class="patch">
            <metadata>
                <title>MS08-069: Vulnerabilities in Microsoft XML Core Services could allow remote code execution (955218)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-4033" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4033"/>
                <reference source="Microsoft" ref_id="MS08-069" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-069.mspx"/>
                <reference source="Microsoft" ref_id="KB955218" ref_url="http://support.microsoft.com/kb/955218"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5847" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5847"/>
                <description>Microsoft has released MS08-069 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-4033</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="the installed operating system is part of the Microsoft Windows family" test_ref="oval:org.mitre.oval:tst:99"/>
                <criteria operator="OR">
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft XML Core Services 3 is installed" definition_ref="oval:org.mitre.oval:def:415"/>
                        <criterion comment="msxml3.dll version is less than 8.100.1048.0" test_ref="oval:org.mitre.oval:tst:9071"/>
                    </criteria>
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft XML Core Services 4 is installed" definition_ref="oval:org.mitre.oval:def:1002"/>
                        <criterion comment="msxml4.dll version is less than 4.20.9870.0" test_ref="oval:org.mitre.oval:tst:9539"/>
                    </criteria>
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft XML Core Services 5 is installed" definition_ref="oval:org.mitre.oval:def:493"/>
                        <criterion comment="msxml5.dll version is less than 5.20.1087.0" test_ref="oval:org.mitre.oval:tst:9234"/>
                    </criteria>
                    <criteria operator="AND">
                        <extend_definition comment="Microsoft XML Core Services 6 is installed" definition_ref="oval:org.mitre.oval:def:454"/>
                        <criterion comment="msxml6.dll version is less than 6.20.1099.0" test_ref="oval:org.mitre.oval:tst:9530"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11511" version="1" class="patch">
            <metadata>
                <title>MS08-068: Vulnerability in SMB could allow remote code execution (957097)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-4037" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4037"/>
                <reference source="Microsoft" ref_id="MS08-068" ref_url="http://www.microsoft.com/technet/security/bulletin/ms08-068.mspx"/>
                <reference source="Microsoft" ref_id="KB957097" ref_url="http://support.microsoft.com/default.aspx/kb/957097"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6012" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6012"/>
                <description>Microsoft has released MS08-068 to address security issues in Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 as documented by CVE-2008-4037</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mrxsmb.sys version is less than 5.1.2600.3467" test_ref="oval:org.mitre.oval:tst:8573"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mrxsmb.sys version is less than 5.1.2600.5700" test_ref="oval:org.mitre.oval:tst:9308"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mrxsmb.sys version is less than 5.2.3790.4369" test_ref="oval:org.mitre.oval:tst:9476"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criteria operator="OR">
                        <criteria operator="AND">
                            <criterion comment="Mrxsmb10.sys version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115264"/>
                            <criterion comment="Mrxsmb10.sys version is less than 6.0.6001.18130" test_ref="oval:org.mitre.oval:tst:8808"/>
                        </criteria>
                        <criteria operator="AND">
                            <criterion comment="Mrxsmb10.sys version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115265"/>
                            <criterion comment="Mrxsmb10.sys version is less than 6.0.6001.22252" test_ref="oval:org.mitre.oval:tst:9477"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11520" version="1" class="patch">
            <metadata>
                <title>MS08-071: Vulnerabilities in GDI Could Allow Remote Code Execution (956802)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-2249" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2249"/>
                <reference source="CVE" ref_id="CVE-2008-3465" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3465"/>
                <reference source="Microsoft" ref_id="MS08-071" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms08-071.mspx"/>
                <reference source="Microsoft" ref_id="KB956802" ref_url="http://support.microsoft.com/default.aspx/kb/956802"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5984" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5984"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:6062" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6062"/>
                <description>Microsoft has released MS08-071to address security issues in Windows XP and Windows Vista, CVE-2008-2249 and CVE-2008-3465</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Gdi32.dll version is less than 5.1.2600.3466" test_ref="oval:gov.nist.fdcc.patch:tst:115201"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Gdi32.dll version is less than 5.1.2600.5698" test_ref="oval:gov.nist.fdcc.patch:tst:115202"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Gdi32.dll version is less than 5.2.3790.4396" test_ref="oval:gov.nist.fdcc.patch:tst:115203"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    </criteria>
                    <criterion comment="Gdi32.dll version is less than 6.0.6002.20609" test_ref="oval:gov.nist.fdcc.patch:tst:115204"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11523" version="1" class="patch">
            <metadata>
                <title>MS08-076: Vulnerabilities in Windows Media Components Could Allow Remote Code Execution (959807)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-3009" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3009"/>
                <reference source="CVE" ref_id="CVE-2008-3010" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3010"/>
                <reference source="Microsoft" ref_id="MS08-076" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms08-076.mspx"/>
                <reference source="Microsoft" ref_id="KB959807" ref_url="http://support.microsoft.com/default.aspx/kb/959807"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5942" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5942"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5689" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5689"/>
                <description>Microsoft has released MS08-076 to address security issues in Windows XP and Windows Vista as documented by CVE-2008-3009 and CVE-2008-3010</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <criteria operator="OR">
                        <criteria operator="AND">
                            <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                            <criterion comment="Wmvcore.dll version is less than 9.0.0.3268" test_ref="oval:gov.nist.fdcc.patch:tst:115231"/>
                        </criteria>
                        <criteria operator="AND">
                            <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                            <criterion comment="Wmvcore.dll version is less than 10.0.0.3703" test_ref="oval:gov.nist.fdcc.patch:tst:115232"/>
                        </criteria>
                        <criteria operator="AND">
                            <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
                            <criterion comment="Wmvcore.dll version is less than 11.0.5721.5251" test_ref="oval:gov.nist.fdcc.patch:tst:115233"/>
                        </criteria>
                    </criteria>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.6001.7001" test_ref="oval:gov.nist.fdcc.patch:tst:115234"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11525" version="1" class="patch">
            <metadata>
                <title>MS09-001: Vulnerabilities in SMB could allow remote code execution (958687)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2008-4114" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4114"/>
                <reference source="CVE" ref_id="CVE-2008-4835" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4835"/>
                <reference source="CVE" ref_id="CVE-2008-4834" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4834"/>
                <reference source="Microsoft" ref_id="MS09-001" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms09-001.mspx"/>
                <reference source="Microsoft" ref_id="KB958687" ref_url="http://support.microsoft.com/default.aspx/kb/958687"/>
                <!-- ==========================================  No OVAL reference yet  =========================================== -->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:0000" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:0000"/>-->
                <!-- ==========================================  No OVAL reference yet  =========================================== -->
                <description>Microsoft has released MS09-001to address security issues in Windows XP and Windows Vista, CVE-2008-4114, CVE-2008-4834, and CVE-2008-4835</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Srv.sys version is less than 5.1.2600.3491" test_ref="oval:gov.nist.fdcc.patch:tst:115251"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Srv.sys version is less than 5.1.2600.5725" test_ref="oval:gov.nist.fdcc.patch:tst:115252"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Srv.sys version is less than 5.2.3790.4425" test_ref="oval:gov.nist.fdcc.patch:tst:115253"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                    <criterion comment="Srv.sys version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115254"/>
                    <criterion comment="Srv.sys version is less than 6.0.6001.18185" test_ref="oval:gov.nist.fdcc.patch:tst:115255"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                    <criterion comment="Srv.sys version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115256"/>
                    <criterion comment="Srv.sys version is less than 6.0.6001.22331" test_ref="oval:gov.nist.fdcc.patch:tst:115257"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    <criterion comment="Srv.sys version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115254"/>
                    <criterion comment="Srv.sys version is less than 6.0.6001.18185" test_ref="oval:gov.nist.fdcc.patch:tst:115255"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    <criterion comment="Srv.sys version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115256"/>
                    <criterion comment="Srv.sys version is less than 6.0.6001.22331" test_ref="oval:gov.nist.fdcc.patch:tst:115257"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11526" version="1" class="patch">
            <metadata>
                <title>MS03-011: Flaw in Microsoft VM Could Enable System Compromise (816093) </title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Virtual Machine (VM)</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2003-0111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0111"/>
                <reference source="Microsoft" ref_id="MS03-011" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS03-011.mspx"/>
                <reference source="Microsoft" ref_id="KB816093" ref_url="http://support.microsoft.com/default.aspx/kb/816093"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:136" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:136"/>
                <description>Microsoft has released MS03-011 to address security issues in Microsoft Virtual Machine (VM) build 5.0.3809 and earlier on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2003-0111.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of msjava.dll is less than 5.0.3810.0" test_ref="oval:org.mitre.oval:tst:2898"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11527" version="1" class="patch">
            <metadata>
                <title>MS04-041: Vulnerability in WordPad Could Allow Code Execution (885836)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Word for Windows 6.0 Converter</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2004-0571" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0571"/>
                <reference source="CVE" ref_id="CVE-2004-0901" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0901"/>
                <reference source="Microsoft" ref_id="MS04-041" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS04-041.mspx"/>
                <reference source="Microsoft" ref_id="KB885836" ref_url="http://support.microsoft.com/default.aspx/kb/885836"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1959" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1959"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3882" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3882"/>
                <description>Microsoft has released MS04-041 to address security issues in Microsoft Word for Windows 6.0 Converter on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2004-0571 and CVE-2004-0901.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR">
                    <criterion comment="the version of ...TextConv\mswrd6.wpc is less than 10.0.803.2" test_ref="oval:org.mitre.oval:tst:2422"/>
                    <criterion comment="the version of ...Accessories\mswrd6.wpc is less than 10.0.803.2" test_ref="oval:gov.nist.fdcc.patch:tst:115301"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11528" version="1" class="patch">
            <metadata>
                <title>MS05-004: ASP.NET Path Validation Vulnerability (887219)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>.NET Framework</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2004-0847" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0847"/>
                <reference source="Microsoft" ref_id="MS05-004" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS05-004.mspx"/>
                <reference source="Microsoft" ref_id="KB887219" ref_url="http://support.microsoft.com/default.aspx/kb/887219"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:3556" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3556"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:4987" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4987"/>
                <description>Microsoft has released MS05-004 to address security issues in Microsoft .NET Framework 1.0 and 1.1 on Microsoft Windows XP Service Pack 2 as documented by CVE-2004-0847.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR" comment="A vulnerable version of .NET Framework v1.1 is installed.">
                    <criteria operator="AND" comment="A vulnerable version of .NET Framework v1.1 (Gold) is installed.">
                        <extend_definition comment="Microsoft .NET Framework 1.1 (Gold) is Installed" definition_ref="oval:gov.nist.fdcc.patch:def:115273"/>
                        <criterion comment="the version of System.web.dll is less than 1.1.4322.1085" test_ref="oval:org.mitre.oval:tst:408"/>
                    </criteria>
                    <criteria operator="AND" comment="A vulnerable version of .NET Framework v1.1 (SP 1) is installed.">
                        <extend_definition comment="Microsoft .NET Framework 1.1 Service Pack 1 is Installed" definition_ref="oval:org.mitre.oval:def:1834"/>
                        <criterion comment="the version of System.web.dll is less than 1.1.4322.2037" test_ref="oval:org.mitre.oval:tst:410"/>
                    </criteria>
                </criteria>
                <criteria operator="OR" comment="A vulnerable version of .NET Framework v1.0 is installed.">
                    <criteria operator="AND" comment="A vulnerable version of .NET Framework v1.0 (SP 2) is installed.">
                        <extend_definition comment="Microsoft .NET Framework v1.0 (SP2) is Installed" definition_ref="oval:gov.nist.fdcc.patch:def:115271"/>
                        <criterion comment="the version of System.web.dll is less than 1.0.3705.556" test_ref="oval:org.mitre.oval:tst:290"/>
                    </criteria>
                    <criteria operator="AND" comment="A vulnerable version of .NET Framework v1.0 (SP3 or later) is installed.">
                        <extend_definition comment="Microsoft .NET Framework v1.0 (SP3 or later) is Installed" definition_ref="oval:gov.nist.fdcc.patch:def:115272"/>
                        <criterion comment="the version of System.web.dll is less than 1.0.3705.6021" test_ref="oval:org.mitre.oval:tst:287"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11529" version="1" class="patch">
            <metadata>
                <title>MS05-007: Vulnerability in Windows Could Allow Information Disclosure (888302)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2005-0051" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0051"/>
                <reference source="Microsoft" ref_id="MS03-011" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS03-011.mspx"/>
                <reference source="Microsoft" ref_id="KB888302" ref_url="http://support.microsoft.com/default.aspx/kb/888302"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2292" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2292"/>
                <description>Microsoft has released MS05-007 to address security issues in Microsoft Windows XP (32-bit) SP2 as documented by CVE-2005-0051.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of srvsvc.dll is less than 5.1.2600.2577" test_ref="oval:org.mitre.oval:tst:560"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11530" version="1" class="patch">
            <metadata>
                <title>MS05-032: Vulnerability in Microsoft Agent Could Allow Spoofing (890046)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Agent</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2005-1214" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1214"/>
                <reference source="Microsoft" ref_id="MS05-032" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS05-032.mspx"/>
                <reference source="Microsoft" ref_id="KB890046" ref_url="http://support.microsoft.com/default.aspx/kb/890046"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1194" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1194"/>
                <description>Microsoft has released MS05-032 to address security issues in Microsoft Agent on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2005-1214.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="the version of agentdpv.dll is less than 2.0.0.3423" test_ref="oval:org.mitre.oval:tst:2425"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11531" version="1" class="patch">
            <metadata>
                <title>MS05-051: Vulnerabilities in MSDTC and COM+ Could Allow Remote Code Execution (902400)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2005-1978" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1978"/>
                <reference source="CVE" ref_id="CVE-2005-1979" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1979"/>
                <reference source="CVE" ref_id="CVE-2005-1980" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1980"/>
                <reference source="Microsoft" ref_id="MS05-051" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS05-051.mspx"/>
                <reference source="Microsoft" ref_id="KB902400" ref_url="http://support.microsoft.com/default.aspx/kb/902400"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1499" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1499"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1134" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1134"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1182" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1182"/>
                <description>Microsoft has released MS05-051 to address security issues in COM+ on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2005-1978, CVE-2005-1979, and CVE-2005-1980.</description>
            </metadata>
            <criteria comment="Software section" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR" comment="Either ole32.dll or rpcss.dll has a version less than 5.1.2600.2726">
                    <criterion comment="the version of ole32.dll is less than 5.1.2600.2726" test_ref="oval:org.mitre.oval:tst:1134"/>
                    <criterion comment="the version of rpcss.dll is less than 5.1.2600.2726" test_ref="oval:org.mitre.oval:tst:1133"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11532" version="1" class="patch">
            <metadata>
                <title>MS06-005: Vulnerability in Windows Media Player Could Allow Remote Code Execution (911565)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Media Player</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2006-0006" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0006"/>
                <reference source="Microsoft" ref_id="MS06-005" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-005.mspx"/>
                <reference source="Microsoft" ref_id="KB911565" ref_url="http://support.microsoft.com/default.aspx/kb/911565"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1598" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1598"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1256" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1256"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1661" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1661"/>
                <description>Microsoft has released MS06-005 to address security issues in Media Player 9 or Media Player 10 on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2006-0006.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criteria operator="OR">
                    <criteria comment="Windows Media Player 9" operator="AND">
                        <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                        <criterion comment="the version of Wmp.dll is less than 9.0.0.3344" test_ref="oval:org.mitre.oval:tst:785"/>
                    </criteria>
                    <criteria comment="Windows Media Player 10" operator="AND">
                        <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                        <criterion comment="the version of Wmp.dll is less than 10.0.0.4019" test_ref="oval:org.mitre.oval:tst:832"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11534" version="1" class="patch">
            <metadata>
                <title>MS06-042: Cumulative Security Update for Internet Explorer (918899)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Internet Explorer</product>
                </affected>
                <reference ref_id="CVE-2004-1166" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1166" source="CVE"/>
                <reference ref_id="CVE-2006-3280" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3280" source="CVE"/>
                <reference ref_id="CVE-2006-3450" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3450" source="CVE"/>
                <reference ref_id="CVE-2006-3451" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3451" source="CVE"/>
                <reference ref_id="CVE-2006-3637" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3637" source="CVE"/>
                <reference ref_id="CVE-2006-3638" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3638" source="CVE"/>
                <reference ref_id="CVE-2006-3639" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3639" source="CVE"/>
                <reference ref_id="CVE-2006-3640" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3640" source="CVE"/>
                <reference source="Microsoft" ref_id="MS06-042" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-042.mspx"/>
                <reference source="Microsoft" ref_id="KB918899" ref_url="http://support.microsoft.com/default.aspx/kb/918899"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:462" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:462"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:738" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:738"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:433" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:433"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:5" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:502" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:502"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:719" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:719"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:577" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:577"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:171" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:171"/>
                <description>Microsoft has released MS06-042 to address security issues in Microsoft Internet Explorer 6 on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2004-1166, CVE-2006-3280, CVE-2006-3450, CVE-2006-3451, CVE-2006-3637, CVE-2006-3638, CVE-2006-3639, and CVE-2006-3640.</description>
            </metadata>
            <criteria comment="IE 6 on Windows XP,SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <extend_definition comment="Internet Explorer 6 is installed" definition_ref="oval:org.mitre.oval:def:563"/>
                <criterion comment="the version of mshtml.dll is less than 6.0.2900.2963" test_ref="oval:org.mitre.oval:tst:95"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11536" version="1" class="patch">
            <metadata>
                <title>MS06-069: Vulnerabilities in Macromedia Flash Player from Adobe Could Allow Remote Code Execution (923789)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Flash Player</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2006-3014" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3014"/>
                <reference source="CVE" ref_id="CVE-2006-3311" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3311"/>
                <reference source="CVE" ref_id="CVE-2006-3587" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3587"/>
                <reference source="CVE" ref_id="CVE-2006-3588" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3588"/>
                <reference source="Microsoft" ref_id="MS06-069" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-069.mspx"/>
                <reference source="Microsoft" ref_id="KB923789" ref_url="http://support.microsoft.com/default.aspx/kb/923789"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:538" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:538"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:394" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:394"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1050" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1050"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:709" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:709"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:432" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:432"/>
                <description>Microsoft has released MS06-069 to address security issues in Macromedia Flash Player from Adobe, version 6.0.84.0 and earlier, on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2006-3014, CVE-2006-3311, CVE-2006-3587, and CVE-2006-3588.</description>
            </metadata>
            <criteria comment="Flash.ocx exists without upgrades to Flash8 or Flash9" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <criterion comment="Flash.ocx exists" test_ref="oval:org.mitre.oval:tst:79"/>
                <criterion comment="Flash8.ocx  (minimum version 8.0.22.0) is not installed" test_ref="oval:org.mitre.oval:tst:83" negate="true"/>
                <criterion comment="Flash9.ocx  (minimum version 9.0.16.0) is not installed" test_ref="oval:org.mitre.oval:tst:85" negate="true"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11537" version="1" class="patch">
            <metadata>
                <title>MS06-072: Cumulative Security Update for Internet Explorer (925454)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Internet Explorer</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2006-5577" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5577"/>
                <reference source="CVE" ref_id="CVE-2006-5578" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5578"/>
                <reference source="CVE" ref_id="CVE-2006-5579" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5579"/>
                <reference source="CVE" ref_id="CVE-2006-5581" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5581"/>
                <reference source="Microsoft" ref_id="MS06-072" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS06-072.mspx"/>
                <reference source="Microsoft" ref_id="KB925454" ref_url="http://support.microsoft.com/default.aspx/kb/925454"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:313" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:313"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:337" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:337"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:761" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:761"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:116" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:116"/>
                <description>Microsoft has released MS06-072 to address security issues in Microsoft Internet Explorer 6 on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2006-5577, CVE-2006-5578, CVE-2006-5579, and CVE-2006-5581.</description>
            </metadata>
            <criteria comment="IE 6 on Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <extend_definition comment="Internet Explorer 6 is installed" definition_ref="oval:org.mitre.oval:def:563"/>
                <criterion comment="the version of mshtml.dll is less than 6.0.2900.3020" test_ref="oval:org.mitre.oval:tst:132"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11538" version="1" class="patch">
            <metadata>
                <title>MS07-034: Cumulative Security Update for Outlook Express and Windows Mail (929123)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Outlook Express</product>
                </affected>
                <reference ref_id="CVE-2006-2111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2111" source="CVE"/>
                <reference ref_id="CVE-2007-2225" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2225" source="CVE"/>
                <reference ref_id="CVE-2007-2227" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2227" source="CVE"/>
                <reference source="Microsoft" ref_id="MS07-034" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS07-034.mspx"/>
                <reference source="Microsoft" ref_id="KB929123" ref_url="http://support.microsoft.com/default.aspx/kb/929123"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:1605" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1605"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2045" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2045"/>
                <reference source="OVAL" ref_id="oval:org.mitre.oval:def:2085" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2085"/>
                <description>Microsoft has released MS06-072 to address security issues in Microsoft Outlook Express 6 on Microsoft Windows XP Service Pack 2 as documented by CVE-2006-2111, CVE-2007-2225, and CVE-2007-2227.</description>
            </metadata>
            <criteria operator="OR">
                <criteria comment="Outlook Express 6 on Windows XP (32-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of inetcomm.dll  is less than 6.0.2900.3138" test_ref="oval:org.mitre.oval:tst:3908"/>
                    <criterion comment="directdb.dll version is less than 6.0.2900.3138" test_ref="oval:gov.nist.fdcc.patch:tst:115290"/>
                    <criterion comment="wab32.dll version is less than 6.0.2900.3138" test_ref="oval:gov.nist.fdcc.patch:tst:115291"/>
                    <criterion comment="msoe.dll version is less than 6.0.2900.3138" test_ref="oval:gov.nist.fdcc.patch:tst:115292"/>
                    <criterion comment="wabimp.dll version is less than 6.0.2900.3138" test_ref="oval:gov.nist.fdcc.patch:tst:115293"/>
                </criteria>
                <criteria comment="Outlook Express 6 on Windows XP (64-bit) SP2" operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of inetcomm.dll  is less than 6.0.3790.4073" test_ref="oval:org.mitre.oval:tst:4092"/>
                    <criterion comment="directdb.dll version is less than 6.0.3790.4073" test_ref="oval:gov.nist.fdcc.patch:tst:115294"/>
                    <criterion comment="wab32.dll version is less than 6.0.3790.4073" test_ref="oval:gov.nist.fdcc.patch:tst:115295"/>
                    <criterion comment="msoe.dll version is less than 6.0.3790.4073" test_ref="oval:gov.nist.fdcc.patch:tst:115296"/>
                    <criterion comment="wabimp.dll version is less than 6.0.3790.4073" test_ref="oval:gov.nist.fdcc.patch:tst:115297"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11539" version="1" class="patch">
            <metadata>
                <title>MS05-009: Vulnerability in PNG Processing Could Allow Remote Code Execution (890261)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Windows Messenger 4.7</product>
                </affected>
                <reference source="CVE" ref_id="CVE-2004-0597" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0597"/>
                <reference source="Microsoft" ref_id="MS05-009" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS05-009.mspx"/>
                <reference source="Microsoft" ref_id="KB890261" ref_url="http://support.microsoft.com/default.aspx/kb/890261"/>
                <description>Microsoft has released MS05-009 to address security issues in Microsoft Windows Messenger version 4.7 on Microsoft Windows XP (32-bit) SP2 as documented by CVE-2004-0597.</description>
            </metadata>
            <criteria comment="Windows XP (32-bit) SP2" operator="AND">
                <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                <extend_definition comment="Windows Messenger 4.7 is installed" definition_ref="oval:org.mitre.oval:def:6101"/>
                <criterion comment="the version of Msmsgs.exe is equal to 4.7.0.3000" test_ref="oval:gov.nist.fdcc.patch:tst:115276"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11548" version="1" class="patch">
            <metadata>
                <title>MS09-007: Vulnerability in SChannel could allow spoofing (960225)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2009-0085" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0085"/>
                <reference source="Microsoft" ref_id="MS09-007" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms09-007.mspx"/>
                <reference source="Microsoft" ref_id="KB960225" ref_url="http://support.microsoft.com/default.aspx/kb/960225"/>
                <description>Microsoft has released MS09-007 to address security issues in Windows XP and Windows Vista, CVE-2009-0085</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Schannel.sys version is less than 5.1.2600.3487" test_ref="oval:gov.nist.fdcc.patch:tst:115481"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Schannel.sys version is less than 5.1.2600.5721" test_ref="oval:gov.nist.fdcc.patch:tst:115482"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Schannel.sys version is less than 5.2.3790.4458" test_ref="oval:gov.nist.fdcc.patch:tst:115483"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    </criteria>
                    <criterion comment="Schannel.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115577"/>
                    <criterion comment="Schannel.sys version is less than 6.0.6001.18175" test_ref="oval:gov.nist.fdcc.patch:tst:115484"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    </criteria>
                    <criterion comment="Schannel.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115578"/>
                    <criterion comment="Schannel.sys version is less than 6.0.6001.22372" test_ref="oval:gov.nist.fdcc.patch:tst:115485"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11549" version="1" class="patch">
            <metadata>
                <title>MS09-010: Vulnerabilities in WordPad and Office Text Converters Could Allow Remote Code Execution</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product/>
                </affected>
                <reference source="Microsoft" ref_id="MS09-010" ref_url="http://www.microsoft.com/technet/security/bulletin/MB09-010"/>
                <reference source="Microsoft" ref_id="KB960477" ref_url="http://support.microsoft.com/kb/960477"/>
                <reference source="CVE" ref_id="CVE-2008-4841" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4841"/>
                <reference source="CVE" ref_id="CVE-2009-0087" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0087"/>
                <reference source="CVE" ref_id="CVE-2009-0235" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0235"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-010 to address security issues in Microsoft Windows XP as documented by CVE-2008-4841, CVE-2009-0087, and CVE-2009-0235.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mswrd8.wpc version is less than 10.0.803.10" test_ref="oval:gov.nist.fdcc.patch:tst:115315"/>
                    <criterion comment="Wordpad.exe version is less than 5.1.2600.3355" test_ref="oval:gov.nist.fdcc.patch:tst:115317"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mswrd8.wpc version is less than 2007.10.31.10" test_ref="oval:gov.nist.fdcc.patch:tst:115316"/>
                    <criterion comment="Wordpad.exe version is less than 5.1.2600.5584" test_ref="oval:gov.nist.fdcc.patch:tst:115318"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mswrd8.wpc version is less than 10.0.803.10" test_ref="oval:gov.nist.fdcc.patch:tst:115315"/>
                    <criterion comment="Wordpad.exe version is less than 5.2.3790.4282" test_ref="oval:gov.nist.fdcc.patch:tst:115319"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11550" version="1" class="patch">
            <metadata>
                <title>MS09-012: Vulnerabilities in Windows Could Allow Elevation of Privilege</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-012" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-012"/>
                <reference source="Microsoft" ref_id="KB959454" ref_url="http://support.microsoft.com/kb/959454"/>
                <reference source="CVE" ref_id="CVE-2008-1436" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1436"/>
                <reference source="CVE" ref_id="CVE-2009-0078" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0078"/>
                <reference source="CVE" ref_id="CVE-2009-0079" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0079"/>
                <reference source="CVE" ref_id="CVE-2009-0080" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0080"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-012 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2008-1436, CVE-2009-0078, CVE-2009-0079 and CVE-2009-0080.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criteria operator="OR">
                        <criterion comment="Msdtcprx.dll version is less than 2001.12.4414.320" test_ref="oval:gov.nist.fdcc.patch:tst:115320"/>
                        <criterion comment="Ntoskrnl.exe version is less than 5.1.2600.3520" test_ref="oval:gov.nist.fdcc.patch:tst:115321"/>
                    </criteria>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criteria operator="OR">
                        <criterion comment="Msdtcprx.dll version is less than 2001.12.4414.706" test_ref="oval:gov.nist.fdcc.patch:tst:115322"/>
                        <criterion comment="Ntoskrnl.exe version is less than 5.1.2600.5755" test_ref="oval:gov.nist.fdcc.patch:tst:115323"/>
                    </criteria>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Msdtcprx.dll version is less than 2001.12.4720.4340" test_ref="oval:gov.nist.fdcc.patch:tst:115324"/>
                    <criterion comment="Ntoskrnl.exe version is less than 5.2.3790.4478" test_ref="oval:gov.nist.fdcc.patch:tst:115325"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <criteria operator="OR">
                        <criteria operator="AND">
                            <criterion comment="Msdtcprx.dll version is greater than or equal to 2001.12.6931.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115326"/>
                            <criterion comment="Msdtcprx.dll version is less than 2001.12.6931.18085" test_ref="oval:gov.nist.fdcc.patch:tst:115328"/>
                        </criteria>
                        <criteria operator="AND">
                            <criterion comment="Ntoskrnl.exe version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115327"/>
                            <criterion comment="Ntoskrnl.exe version is less than 6.0.6001.18226" test_ref="oval:gov.nist.fdcc.patch:tst:115329"/>
                        </criteria>
                    </criteria>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    </criteria>
                    <criteria operator="OR">
                        <criteria operator="AND">
                            <criterion comment="Msdtcprx.dll version is greater than or equal to 2001.12.6931.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115330"/>
                            <criterion comment="Wpgimp32.flt version is less than 2001.12.6931.22197" test_ref="oval:gov.nist.fdcc.patch:tst:115332"/>
                        </criteria>
                        <criteria operator="AND">
                            <criterion comment="Ntoskrnl.exe version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115331"/>
                            <criterion comment="Ntoskrnl.exe version is less than 6.0.6001.22389" test_ref="oval:gov.nist.fdcc.patch:tst:115333"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11551" version="1" class="patch">
            <metadata>
                <title>MS09-013: Vulnerabilities in Windows HTTP Services Could Allow Remote Code Execution</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-013" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-013"/>
                <reference source="Microsoft" ref_id="KB960803" ref_url="http://support.microsoft.com/kb/960803"/>
                <reference source="CVE" ref_id="CVE-2009-0086" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0086"/>
                <reference source="CVE" ref_id="CVE-2009-0089" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0089"/>
                <reference source="CVE" ref_id="CVE-2009-0550" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0550"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-013 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-0086, CVE-2009-0089, and CVE-2009-0550.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Winhttp.dll version is less than 5.1.2600.3494" test_ref="oval:gov.nist.fdcc.patch:tst:115334"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Winhttp.dll version is less than 5.1.2600.5727" test_ref="oval:gov.nist.fdcc.patch:tst:115335"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Winhttp.dll version is less than 5.2.3790.4427" test_ref="oval:gov.nist.fdcc.patch:tst:115336"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Winhttp.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115337"/>
                    <criterion comment="Winhttp.dll version is less than 6.0.6001.18178" test_ref="oval:gov.nist.fdcc.patch:tst:115338"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Winhttp.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115339"/>
                    <criterion comment="Winhttp.dll version is less than 6.0.6001.22323" test_ref="oval:gov.nist.fdcc.patch:tst:115340"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11553" version="1" class="patch">
            <metadata>
                <title>MS09-011: Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution (961373)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CVE" ref_id="CVE-2009-0084" ref_url="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0084"/>
                <reference source="Microsoft" ref_id="MS09-011" ref_url="http://www.microsoft.com/technet/security/Bulletin/ms09-011.mspx"/>
                <reference source="Microsoft" ref_id="KB961373" ref_url="http://support.microsoft.com/default.aspx/kb/961373"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-011 to address security issues in Windows XP as documented in CVE-2009-0085</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Quartz.dll version is less than 6.5.2600.3497" test_ref="oval:gov.nist.fdcc.patch:tst:115531"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Quartz.dll version is less than 6.5.2600.5731" test_ref="oval:gov.nist.fdcc.patch:tst:115532"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Quartz.dll version is less than 6.5.3790.4431" test_ref="oval:gov.nist.fdcc.patch:tst:115533"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11554" version="1" class="patch">
            <metadata>
                <title>MS09-015: Blended Threat Vulnerability in SearchPath Could Allow Elevation of Privilege (959426)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-015" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-015"/>
                <reference source="Microsoft" ref_id="KB959426" ref_url="http://support.microsoft.com/kb/959426"/>
                <reference source="CVE" ref_id="CVE-2008-2540" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2540"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-015 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2008-2540.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Kernel32.dll version is less than 5.1.2600.3541" test_ref="oval:gov.nist.fdcc.patch:tst:115541"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Kernel32.dll version is less than 5.1.2600.5781" test_ref="oval:gov.nist.fdcc.patch:tst:115542"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Kernel32.dll version is less than 5.2.3790.4480" test_ref="oval:gov.nist.fdcc.patch:tst:115543"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Kernel32.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115544"/>
                    <criterion comment="Kernel32.dll version is less than 6.0.6001.18215" test_ref="oval:gov.nist.fdcc.patch:tst:115545"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Kernel32.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115546"/>
                    <criterion comment="Kernel32.dll version is less than 6.0.6001.22376" test_ref="oval:gov.nist.fdcc.patch:tst:115547"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11555" version="1" class="patch">
            <metadata>
                <title>MS09-020: Vulnerabilities in Internet Information Services (IIS) Could Allow Elevation of Privilege (970483)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Microsoft Internet Information Services 5.1</product>
                    <product>Microsoft Internet Information Services 6.0</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-020" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS09-020.mspx"/>
                <reference source="Microsoft" ref_id="KB970483" ref_url="http://support.microsoft.com/kb/970483"/>
                <reference source="CVE" ref_id="CVE-200" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-200"/>
                <description>Microsoft has released MS09-020 to address security issues in Microsoft Internet Information Services (IIS) 5.1 and 6.0 as documented by CVE-2009-1535.</description>
            </metadata>
            <criteria operator="AND">
                <criteria operator="OR">
                    <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                        <extend_definition comment="Microsoft IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                        <criterion comment="Httpext.dll version is less than 6.0.2600.3574" test_ref="oval:gov.nist.fdcc.patch:tst:115579"/>
                    </criteria>
                    <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                        <criteria operator="OR">
                            <extend_definition comment="Microsoft IIS 6.0 is installed" definition_ref="oval:org.mitre.oval:def:227"/>
                            <extend_definition comment="Microsoft IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                        </criteria>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <criterion comment="Httpext.dll version is less than 6.0.3790.4518" test_ref="oval:gov.nist.fdcc.patch:tst:115580"/>
                    </criteria>
                    <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft IIS 5.1 is installed" definition_ref="oval:org.mitre.oval:def:460"/>
                        <criterion comment="The iis optional component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600001"/>
                        <criterion comment="Httpext.dll version is less than 6.0.2600.5817" test_ref="oval:gov.nist.fdcc.patch:tst:115581"/>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11557" version="1" class="patch">
            <metadata>
                <title>MS09-026: Vulnerability in RPC Could Allow Elevation of Privilege (970238)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-026" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS09-026.mspx"/>
                <reference source="Microsoft" ref_id="KB970238" ref_url="http://support.microsoft.com/kb/970238"/>
                <reference source="CVE" ref_id="CVE-2009-0568" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0568"/>
                <description>Microsoft has released MS09-026 to address security issues in Microsoft Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-0568.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Rpcrt4.dll version is less than 5.1.2600.3555" test_ref="oval:gov.nist.fdcc.patch:tst:115593"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Rpcrt4.dll version is less than 5.2.3790.4502" test_ref="oval:gov.nist.fdcc.patch:tst:115594"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Rpcrt4.dll version is less than 5.1.2600.5795" test_ref="oval:gov.nist.fdcc.patch:tst:115595"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Rpcrt4.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115596"/>
                    <criterion comment="Rpcrt4.dll version is less than 6.0.6001.18247" test_ref="oval:gov.nist.fdcc.patch:tst:115597"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Rpcrt4.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115598"/>
                    <criterion comment="Rpcrt4.dll version is less than 6.0.6001.22417" test_ref="oval:gov.nist.fdcc.patch:tst:115599"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Rpcrt4.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115600"/>
                    <criterion comment="Rpcrt4.dll version is less than 6.0.6002.18024" test_ref="oval:gov.nist.fdcc.patch:tst:115601"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Rpcrt4.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115602"/>
                    <criterion comment="Rpcrt4.dll version is less than 6.0.6002.22120" test_ref="oval:gov.nist.fdcc.patch:tst:115603"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11566" version="1" class="patch">
            <metadata>
                <title>MS09-022: Vulnerabilities in Windows Print Spooler Could Allow Remote Code Execution (961501)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-022" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS09-022.mspx"/>
                <reference source="Microsoft" ref_id="KB961501" ref_url="http://support.microsoft.com/kb/961501"/>
                <reference source="CVE" ref_id="CVE-2009-0568" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0228"/>
                <reference source="CVE" ref_id="CVE-2009-0568" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0229"/>
                <reference source="CVE" ref_id="CVE-2009-0568" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0230"/>
                <description>Microsoft has released MS09-22 to address security issues in Microsoft Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-0228, CVE-2009-0229, and CVE-2009-0230.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Localspl.dll version is less than 5.1.2600.3569" test_ref="oval:gov.nist.fdcc.patch:tst:115661"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Localspl.dll version is less than 5.2.3790.4509" test_ref="oval:gov.nist.fdcc.patch:tst:115662"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Localspl.dll version is less than 5.1.2600.5809" test_ref="oval:gov.nist.fdcc.patch:tst:115663"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Localspl.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115667"/>
                    <criterion comment="Localspl.dll version is less than 6.0.6001.18247" test_ref="oval:gov.nist.fdcc.patch:tst:1156631"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Localspl.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115668"/>
                    <criterion comment="Localspl.dll version is less than 6.0.6001.22417" test_ref="oval:gov.nist.fdcc.patch:tst:115664"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Localspl.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115669"/>
                    <criterion comment="Localspl.dll version is less than 6.0.6002.18024" test_ref="oval:gov.nist.fdcc.patch:tst:115665"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Localspl.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115660"/>
                    <criterion comment="Localspl.dll version is less than 6.0.6002.22120" test_ref="oval:gov.nist.fdcc.patch:tst:115666"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11565" version="1" class="patch">
            <metadata>
                <title>MS09-054: Cumulative Security Update for Internet Explorer (974455)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Internet Explorer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-054" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-054.mspx"/>
                <reference source="Microsoft" ref_id="KB974455" ref_url="http://support.microsoft.com/kb/974455"/>
                <reference source="CVE" ref_id="CVE-2009-1547" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1547"/>
                <reference source="CVE" ref_id="CVE-2009-2529" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2529"/>
                <reference source="CVE" ref_id="CVE-2009-2530" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2530"/>
                <reference source="CVE" ref_id="CVE-2009-2531" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2531"/>
                <!--<reference source="OVAL" ref_id="oval:org.mitre.oval:def:" ref_url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:"/>-->
                <description>Microsoft has released MS09-054 to address security issues in Internet Explorer 7 as documented by CVE-2009-1547, CVE-2009-2529, CVE-2009-2530 and CVE-2009-2531</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Microsoft Internet Explorer 7 is installed" definition_ref="oval:org.mitre.oval:def:627"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6000.16915" test_ref="oval:gov.nist.fdcc.patch:tst:115651"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Microsoft Internet Explorer 7 is installed" definition_ref="oval:org.mitre.oval:def:627"/>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6000.20000" test_ref="oval:gov.nist.fdcc.patch:tst:115304"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6000.21115  " test_ref="oval:gov.nist.fdcc.patch:tst:115650"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <extend_definition comment="Microsoft Internet Explorer 7 is installed" definition_ref="oval:org.mitre.oval:def:627"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6000.16915  " test_ref="oval:gov.nist.fdcc.patch:tst:1156599"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <extend_definition comment="Microsoft Internet Explorer 7 is installed" definition_ref="oval:org.mitre.oval:def:627"/>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6001.20000" test_ref="oval:gov.nist.fdcc.patch:tst:115304"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6000.21115  " test_ref="oval:gov.nist.fdcc.patch:tst:115652"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115258"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6001.18319" test_ref="oval:gov.nist.fdcc.patch:tst:115653"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115259"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6001.22508" test_ref="oval:gov.nist.fdcc.patch:tst:115654"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115657"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6002.18100" test_ref="oval:gov.nist.fdcc.patch:tst:115655"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Mshtml.dll version is greater than or equal to 7.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115658"/>
                    <criterion comment="Mshtml.dll version is less than 7.0.6002.22212" test_ref="oval:gov.nist.fdcc.patch:tst:115656"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11570" version="1" class="patch">
            <metadata>
                <title>MS09-028: Vulnerabilities in Microsoft DirectShow Could Allow Remote Code Execution (971633)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-028" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS09-028.mspx"/>
                <reference source="Microsoft" ref_id="KB971633" ref_url="http://support.microsoft.com/kb/971633"/>
                <reference source="CVE" ref_id="CVE-2009-1537" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1537"/>
                <reference source="CVE" ref_id="CVE-2009-1538" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1538"/>
                <reference source="CVE" ref_id="CVE-2009-1539" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1539"/>
                <description>Microsoft has released MS09-028 to address security issues in Microsoft Windows XP as documented by CVE-2009-1537, CVE-2009-1538, and CVE-2009-1539.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Quartz.dll version is less than 6.5.2600.3580" test_ref="oval:gov.nist.fdcc.patch:tst:115701"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Quartz.dll version is less than 6.5.3790.4523" test_ref="oval:gov.nist.fdcc.patch:tst:115702"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Quartz.dll version is less than 6.5.2600.5822" test_ref="oval:gov.nist.fdcc.patch:tst:115703"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11571" version="1" class="patch">
            <metadata>
                <title>MS09-029: Vulnerabilities in the Embedded OpenType Font Engine Could Allow Remote Code Execution (961371)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <product>Operating System</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-029" ref_url="http://www.microsoft.com/technet/security/Bulletin/MS09-029.mspx"/>
                <reference source="Microsoft" ref_id="KB961371" ref_url="http://support.microsoft.com/kb/961371"/>
                <reference source="CVE" ref_id="CVE-2009-0231" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0231"/>
                <reference source="CVE" ref_id="CVE-2009-0232" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0232"/>
                <description>Microsoft has released MS09-29 to address security issues in Microsoft Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-0231 and CVE-2009-0232.</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="WinXP,SP2 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Fontsub.dll version is less than 5.1.2600.3589" test_ref="oval:gov.nist.fdcc.patch:tst:115710"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP2 (64-bit)">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Fontsub.dll version is less than 5.2.3790.4530" test_ref="oval:gov.nist.fdcc.patch:tst:115711"/>
                </criteria>
                <criteria operator="AND" comment="WinXP,SP3 (32-bit)">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Fontsub.dll version is less than 5.1.2600.5830" test_ref="oval:gov.nist.fdcc.patch:tst:115712"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Fontsub.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115713"/>
                    <criterion comment="Fontsub.dll version is less than 6.0.6001.18272" test_ref="oval:gov.nist.fdcc.patch:tst:115714"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Fontsub.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115715"/>
                    <criterion comment="Fontsub.dll version is less than 6.0.6001.22450" test_ref="oval:gov.nist.fdcc.patch:tst:115716"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Fontsub.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115717"/>
                    <criterion comment="Fontsub.dll version is less than 6.0.6002.18051" test_ref="oval:gov.nist.fdcc.patch:tst:115718"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Fontsub.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115719"/>
                    <criterion comment="Fontsub.dll version is less than 6.0.6002.22152" test_ref="oval:gov.nist.fdcc.patch:tst:1157190"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11572" version="1" class="patch">
            <metadata>
                <title>MS09-055: Cumulative Security Update of ActiveX Kill Bits (973525)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <platform>Microsoft Windows 7</platform>
                    <platform>Microsoft Windows Server 2008 R2</platform>
                    <product>Internet Explorer</product>
                </affected>
                <reference source="Microsoft" ref_id="MS09-055" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-055.mspx"/>
                <reference source="Microsoft" ref_id="KB973525" ref_url="http://support.microsoft.com/kb/973525"/>
                <reference source="CVE" ref_id="CVE-2009-2493" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2493"/>
                <description>Microsoft has released MS09-055 to address security issues in Internet Explorer 7 as documented by CVE-2009-2493</description>
            </metadata>
            <criteria operator="AND">
                <criteria operator="OR">
                    <extend_definition comment="Microsoft Windows XP SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115274"/>
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                    <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                    <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    <extend_definition comment="Microsoft Windows 7 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:6165"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (32-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115286"/>
                    <extend_definition comment="Microsoft Windows 7 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5950"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (64-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115287"/>
                    <extend_definition comment="Microsoft Windows 7 (ia-64) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115281"/>
                    <extend_definition comment="Microsoft Windows Server 2008 (ia-64) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115288"/>
                </criteria>
                <criteria operator="OR">
                    <criterion comment="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{0002E531-0000-0000-C000-000000000046}!Compatibility Flags does not exist" test_ref="oval:gov.nist.fdcc.patch:tst:115721"/>
                    <criterion comment="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{0002E531-0000-0000-C000-000000000046}!Compatibility Flags is not equal to 0x00000400" test_ref="oval:gov.nist.fdcc.patch:tst:115722"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11577" version="2" class="patch">
            <metadata>
                <title>MS09-037: Vulnerabilities in Microsoft Active Template Library (ATL) Could Allow Remote Code Execution (973908)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-037" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-037.mspx"/>
                <reference source="Microsoft" ref_id="KB973908" ref_url="http://support.microsoft.com/kb/973908"/>
                <reference source="CVE" ref_id="CVE-2008-0015" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0015"/>
                <reference source="CVE" ref_id="CVE-2008-0020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0020"/>
                <reference source="CVE" ref_id="CVE-2009-0901" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0901"/>
                <reference source="CVE" ref_id="CVE-2009-2493" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2493"/>
                <reference source="CVE" ref_id="CVE-2009-2494" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2494"/>
                <description>Microsoft has released MS09-037 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2008-0015, CVE-2008-0020, CVE-2009-0901, CVE-2009-2493, and CVE-2009-2494 </description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="Microsoft Outlook Express 6 on Windows XP  (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of Msoe.dll is less than 6.0.2900.3598" test_ref="oval:org.mitre.oval:tst:9966"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft Outlook Express 6 on Windows XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of Msoe.dll is less than 6.0.2900.5843" test_ref="oval:org.mitre.oval:tst:10297"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft Outlook Express 6 on Windows XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft Outlook Express 6 for Windows XP/2003 is installed" definition_ref="oval:org.mitre.oval:def:208"/>
                    <criterion comment="the version of Msoe.dll is less than 6.0.3790.4548" test_ref="oval:org.mitre.oval:tst:10588"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 9 on Windows XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:org.mitre.oval:def:2147"/>
                    <criterion comment="the version of Wmp.dll is less than 9.0.0.3271" test_ref="oval:org.mitre.oval:tst:10183"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 9 on Windows XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:org.mitre.oval:def:2147"/>
                    <criterion comment="the version of Wmp.dll is less than 9.0.0.4507" test_ref="oval:org.mitre.oval:tst:10010"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 10 on Windows XP (32-bit) SP2/SP3">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:org.mitre.oval:def:2172"/>
                    <criterion comment="the version of Wmp.dll is less than 10.0.0.4074" test_ref="oval:org.mitre.oval:tst:9758"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 10 on Windows XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:org.mitre.oval:def:2172"/>
                    <criterion comment="the version of Wmp.dll is less than 10.0.0.4006" test_ref="oval:org.mitre.oval:tst:10291"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows XP (32-bit) SP2/SP3">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:org.mitre.oval:def:2126"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.5721.5268" test_ref="oval:org.mitre.oval:tst:9769"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:org.mitre.oval:def:2126"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.5721.5268" test_ref="oval:org.mitre.oval:tst:9769"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows Vista SP1/Server 2008 (32-bit)/(64-bit)/ia64">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="the version of Spwmp.dll is greater than or equal 6.0.6001.18000" test_ref="oval:org.mitre.oval:tst:10473"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.6001.7007" test_ref="oval:org.mitre.oval:tst:10523"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows Vista SP2/Server 2008 SP2  (32-bit)/(64-bit)/ia64">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="the version of Spwmp.dll is greater than or equal 6.0.6002.18000" test_ref="oval:org.mitre.oval:tst:10648"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.6002.18065" test_ref="oval:org.mitre.oval:tst:10003"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows Vista SP1/Server 2008 (32-bit)/(64-bit)/ia64">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="the version of Spwmp.dll is greater than or equal 6.0.6001.22000" test_ref="oval:org.mitre.oval:tst:10251"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.6001.7114" test_ref="oval:org.mitre.oval:tst:10759"/>
                </criteria>
                <criteria operator="AND" comment="Windows Media Player 11 on Windows Vista SP2/Server 2008 SP2  (32-bit)/(64-bit)/ia64">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="the version of Spwmp.dll is greater than or equal 6.0.6002.22000" test_ref="oval:org.mitre.oval:tst:10624"/>
                    <criterion comment="the version of Wmp.dll is less than 11.0.6002.22172" test_ref="oval:org.mitre.oval:tst:10699"/>
                </criteria>
                <criteria operator="AND" comment="Windows ATL Component on Windows XP, Vista, Server 2008">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="the version of atl.dll is less than 3.5.2284.2" test_ref="oval:org.mitre.oval:tst:10563"/>
                </criteria>
                <criteria operator="AND" comment="DHTML Editing Component ActiveX Control on Windows XP">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <criterion comment="the version of dhtmled.ocx is less than 6.1.0.9247" test_ref="oval:org.mitre.oval:tst:10482"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft MSWebDVD ActiveX Control on Windows XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of Mswebdvd.dll is less than 6.5.2600.3610" test_ref="oval:org.mitre.oval:tst:10763"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft MSWebDVD ActiveX Control on Windows XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of Mswebdvd.dll is less than 6.5.2600.5857" test_ref="oval:org.mitre.oval:tst:10001"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft MSWebDVD ActiveX Control on Windows XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of Mswebdvd.dll is less than 6.5.3790.4564" test_ref="oval:org.mitre.oval:tst:10694"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11579" version="1" class="patch">
            <metadata>
                <title>MS09-038: Vulnerabilities in Windows Media File Processing Could Allow Remote Code Execution (971557)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-038" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-038.mspx"/>
                <reference source="Microsoft" ref_id="KB971557" ref_url="http://support.microsoft.com/kb/971557"/>
                <reference source="CVE" ref_id="CVE-2009-1545" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1545"/>
                <reference source="CVE" ref_id="CVE-2009-1546" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1546"/>
                <description>Microsoft has released MS09-038 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1545 and CVE-2009-1546</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Avifil32.dll version is less than 5.1.2600.3585" test_ref="oval:gov.nist.fdcc.patch:tst:115790"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Avifil32.dll version is less than 5.1.2600.5827  " test_ref="oval:gov.nist.fdcc.patch:tst:115791"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Avifil32.dll version is less than 5.2.3790.4527  " test_ref="oval:gov.nist.fdcc.patch:tst:115792"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Avifil32.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115793"/>
                    <criterion comment="Avifil32.dll version is less than 6.0.6001.18270" test_ref="oval:gov.nist.fdcc.patch:tst:115794"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Avifil32.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115795"/>
                    <criterion comment="Avifil32.dll version is less than 6.0.6001.22447" test_ref="oval:gov.nist.fdcc.patch:tst:115796"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Avifil32.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115797"/>
                    <criterion comment="Avifil32.dll version is less than 6.0.6002.18049" test_ref="oval:gov.nist.fdcc.patch:tst:115798"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Avifil32.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115799"/>
                    <criterion comment="Avifil32.dll version is less than 6.0.6002.22150" test_ref="oval:gov.nist.fdcc.patch:tst:1157991"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11573" version="1" class="patch">
            <metadata>
                <title>MS09-040: Vulnerability in Message Queuing Could Allow Elevation of Privilege (971032)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-040" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-040.mspx"/>
                <reference source="Microsoft" ref_id="KB971032" ref_url="http://support.microsoft.com/kb/971032"/>
                <reference source="CVE" ref_id="CVE-2009-1922" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1922"/>
                <description>Microsoft has released MS09-040 to address security issues in Windows XP as documented by CVE-2009-1922</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mqsvc.dll version is less than 5.1.0.1111" test_ref="oval:gov.nist.fdcc.patch:tst:115730"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mqsvc.dll version is less than 5.1.0.1111" test_ref="oval:gov.nist.fdcc.patch:tst:115730"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mqsvc.dll version is less than 5.2.2007.4530" test_ref="oval:gov.nist.fdcc.patch:tst:115731"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11574" version="1" class="patch">
            <metadata>
                <title>MS09-041: Vulnerability in Workstation Service Could Allow Elevation of Privilege (971657)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-041" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-041.mspx"/>
                <reference source="Microsoft" ref_id="KB971657" ref_url="http://support.microsoft.com/kb/971657"/>
                <reference source="CVE" ref_id="CVE-2009-1544" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1544"/>
                <description>Microsoft has released MS09-041 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1544</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Wkssvc.dll version is less than 5.1.2600.3584" test_ref="oval:gov.nist.fdcc.patch:tst:115740"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Wkssvc.dll version is less than 5.1.2600.5826  " test_ref="oval:gov.nist.fdcc.patch:tst:115741"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Wkssvc.dll version is less than 5.2.3790.4530  " test_ref="oval:gov.nist.fdcc.patch:tst:115742"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Wkssvc.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115743"/>
                    <criterion comment="Wkssvc.dll version is less than 6.0.6001.18270" test_ref="oval:gov.nist.fdcc.patch:tst:115744"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Wkssvc.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115745"/>
                    <criterion comment="Wkssvc.dll version is less than 6.0.6001.22447" test_ref="oval:gov.nist.fdcc.patch:tst:115746"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Wkssvc.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115747"/>
                    <criterion comment="Wkssvc.dll version is less than 6.0.6002.18049" test_ref="oval:gov.nist.fdcc.patch:tst:115748"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Wkssvc.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115749"/>
                    <criterion comment="Wkssvc.dll version is less than 6.0.6002.22150" test_ref="oval:gov.nist.fdcc.patch:tst:1157491"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11575" version="1" class="patch">
            <metadata>
                <title>MS09-042: Vulnerability in Telnet Could Allow Remote Code Execution (960859)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-042" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-042.mspx"/>
                <reference source="Microsoft" ref_id="KB960859" ref_url="http://support.microsoft.com/kb/960859"/>
                <reference source="CVE" ref_id="CVE-2009-1930" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1930"/>
                <description>Microsoft has released MS09-042 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1930</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Telnet.exe version is less than 5.1.2600.3587" test_ref="oval:gov.nist.fdcc.patch:tst:115750"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Telnet.exe version is less than 5.1.2600.5829  " test_ref="oval:gov.nist.fdcc.patch:tst:115751"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Telnet.exe version is less than 5.2.3790.4528  " test_ref="oval:gov.nist.fdcc.patch:tst:115752"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Telnet.exe version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115753"/>
                    <criterion comment="Telnet.exe version is less than 6.0.6001.18270" test_ref="oval:gov.nist.fdcc.patch:tst:115754"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Telnet.exe version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115755"/>
                    <criterion comment="Telnet.exe version is less than 6.0.6001.22447" test_ref="oval:gov.nist.fdcc.patch:tst:115756"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Telnet.exe version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115757"/>
                    <criterion comment="Telnet.exe version is less than 6.0.6002.18049" test_ref="oval:gov.nist.fdcc.patch:tst:115758"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Telnet.exe version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115759"/>
                    <criterion comment="Telnet.exe version is less than 6.0.6002.22150" test_ref="oval:gov.nist.fdcc.patch:tst:1157591"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11576" version="1" class="patch">
            <metadata>
                <title>MS09-044: Vulnerabilities in Remote Desktop Connection Could Allow Remote Code Execution (970927)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-044" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx"/>
                <reference source="Microsoft" ref_id="KB970927" ref_url="http://support.microsoft.com/kb/970927"/>
                <reference source="Microsoft" ref_id="KB958470" ref_url="http://support.microsoft.com/kb/958470"/>
                <reference source="Microsoft" ref_id="KB958469" ref_url="http://support.microsoft.com/kb/958469"/>
                <reference source="CVE" ref_id="CVE-2009-1133" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1133"/>
                <reference source="CVE" ref_id="CVE-2009-1929" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1929"/>
                <description>Microsoft has released MS09-044 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1133 and CVE-2009-1929</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mstscax.dll version is less than 5.1.2600.3581" test_ref="oval:gov.nist.fdcc.patch:tst:115761"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mstscax.dll version is less than 5.1.2600.3581" test_ref="oval:gov.nist.fdcc.patch:tst:115761"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mstscax.dll version is less than 5.1.2600.3581" test_ref="oval:gov.nist.fdcc.patch:tst:115761"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="2k3mstsc.dll version is less than 5.1.3790.0" test_ref="oval:gov.nist.fdcc.patch:tst:115762"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="2k3mstsc.dll version is less than 5.1.3790.0 " test_ref="oval:gov.nist.fdcc.patch:tst:115762"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="2k3mstsc.dll version is less than 5.1.2600.3581" test_ref="oval:gov.nist.fdcc.patch:tst:115763"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6000.16000" test_ref="oval:gov.nist.fdcc.patch:tst:115764"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6000.16865" test_ref="oval:gov.nist.fdcc.patch:tst:115765"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6000.21000" test_ref="oval:gov.nist.fdcc.patch:tst:115766"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6000.21061" test_ref="oval:gov.nist.fdcc.patch:tst:115767"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115768"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6001.18266" test_ref="oval:gov.nist.fdcc.patch:tst:115769"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1157691"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6001.22443" test_ref="oval:gov.nist.fdcc.patch:tst:1157692"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6000.16000" test_ref="oval:gov.nist.fdcc.patch:tst:115764"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6000.16865" test_ref="oval:gov.nist.fdcc.patch:tst:115765"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6000.21000" test_ref="oval:gov.nist.fdcc.patch:tst:115766"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6000.21061" test_ref="oval:gov.nist.fdcc.patch:tst:115767"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115768"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6001.18266" test_ref="oval:gov.nist.fdcc.patch:tst:115769"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1157691"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6001.22443" test_ref="oval:gov.nist.fdcc.patch:tst:1157692"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1157693"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6002.18045" test_ref="oval:gov.nist.fdcc.patch:tst:1157694"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Mstscax.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1157695"/>
                    <criterion comment="Mstscax.dll version is less than 6.0.6002.22146" test_ref="oval:gov.nist.fdcc.patch:tst:1157696"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11585" version="1" class="patch">
            <metadata>
                <title>MS09-045: Vulnerability in JScript Scripting Engine Could Allow Remote Code Execution (971961)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-045" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-045.mspx"/>
                <reference source="Microsoft" ref_id="KB971961" ref_url="http://support.microsoft.com/kb/971961"/>
                <reference source="CVE" ref_id="CVE-2009-1920" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1920"/>
                <description>Microsoft has released MS09-045 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1920</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="Microsoft XP (32-bit SP2 or SP3, 64-bit SP2)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.6.0.0" test_ref="oval:gov.nist.fdcc.patch:tst:115851"/>
                    <criterion comment="Jscript.dll version is less than 5.6.0.8837" test_ref="oval:gov.nist.fdcc.patch:tst:115852"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft XP (32-bit SP2 or SP3, 64-bit SP2)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.7.0.0" test_ref="oval:gov.nist.fdcc.patch:tst:115853"/>
                    <criterion comment="Jscript.dll version is less than 5.7.6002.22145" test_ref="oval:gov.nist.fdcc.patch:tst:115854"/>
                </criteria>
                <criteria operator="AND" comment="Microsoft XP (32-bit SP2 or SP3, 64-bit SP2)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.8.0.0" test_ref="oval:gov.nist.fdcc.patch:tst:115855"/>
                    <criterion comment="Jscript.dll version is less than 5.8.6001.22886" test_ref="oval:gov.nist.fdcc.patch:tst:115856"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.7.0.18000" test_ref="oval:gov.nist.fdcc.patch:tst:115857"/>
                    <criterion comment="Jscript.dll version is less than 5.7.0.18266" test_ref="oval:gov.nist.fdcc.patch:tst:115858"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.7.0.22000" test_ref="oval:gov.nist.fdcc.patch:tst:115859"/>
                    <criterion comment="Jscript.dll version is less than 5.7.0.22443" test_ref="oval:gov.nist.fdcc.patch:tst:1158591"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.7.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1158592"/>
                    <criterion comment="Jscript.dll version is less than 5.7.6002.18045" test_ref="oval:gov.nist.fdcc.patch:tst:1158593"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.7.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1158531"/>
                    <criterion comment="Jscript.dll version is less than 5.7.6002.22146" test_ref="oval:gov.nist.fdcc.patch:tst:1158594"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.8.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1158595"/>
                    <criterion comment="Jscript.dll version is less than 5.8.6001.18795" test_ref="oval:gov.nist.fdcc.patch:tst:1158596"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 or SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Jscript.dll version is greater than or equal to 5.8.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1158551"/>
                    <criterion comment="Jscript.dll version is less than 5.8.6001.22886" test_ref="oval:gov.nist.fdcc.patch:tst:1158597"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11586" version="1" class="patch">
            <metadata>
                <title>MS09-046: Vulnerability in DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (956844)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-046" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-046.mspx"/>
                <reference source="Microsoft" ref_id="KB956844" ref_url="http://support.microsoft.com/kb/956844"/>
                <reference source="CVE" ref_id="CVE-2009-2519" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2519"/>
                <description>Microsoft has released MS09-046 to address security issues in Windows XP as documented by CVE-2009-2519</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="Triedit.dll version is less than 6.1.0.9246" test_ref="oval:gov.nist.fdcc.patch:tst:115860"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="Triedit.dll version is less than 6.1.0.9246" test_ref="oval:gov.nist.fdcc.patch:tst:115860"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="Triedit.dll version is less than 6.1.0.9246" test_ref="oval:gov.nist.fdcc.patch:tst:115860"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11587" version="1" class="patch">
            <metadata>
                <title>MS09-047: Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (973812)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-047" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-047.mspx"/>
                <reference source="Microsoft" ref_id="KB973812" ref_url="http://support.microsoft.com/kb/973812"/>
                <reference source="CVE" ref_id="CVE-2009-2498" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2498"/>
                <reference source="CVE" ref_id="CVE-2009-2499" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2499"/>
                <description>Microsoft has released MS09-047 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-2498 and CVE-2009-2499</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                    <criterion comment="the version of Wmvcore.dll is less than 9.0.0.3270" test_ref="oval:gov.nist.fdcc.patch:tst:115870"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 9.0.0.3300" test_ref="oval:gov.nist.fdcc.patch:tst:115871"/>
                    <criterion comment="the version of Wmvcore.dll is less than 9.0.0.3362" test_ref="oval:gov.nist.fdcc.patch:tst:115872"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                    <criterion comment="the version of Wmvcore.dll is less than 9.0.0.4506" test_ref="oval:gov.nist.fdcc.patch:tst:115873"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="the version of Wmvcore.dll is less than 10.0.0.3705" test_ref="oval:gov.nist.fdcc.patch:tst:115874"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 10.0.0.4000" test_ref="oval:gov.nist.fdcc.patch:tst:115875"/>
                    <criterion comment="the version of Wmvcore.dll is less than 10.0.0.4072" test_ref="oval:gov.nist.fdcc.patch:tst:115876"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 10.0.0.4300" test_ref="oval:gov.nist.fdcc.patch:tst:115877"/>
                    <criterion comment="the version of Wmvcore.dll is less than 10.0.0.4372" test_ref="oval:gov.nist.fdcc.patch:tst:115878"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="the version of Wmvcore.dll is less than 10.0.0.4005" test_ref="oval:gov.nist.fdcc.patch:tst:115879"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.5721.5265" test_ref="oval:gov.nist.fdcc.patch:tst:1158790"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 11.0.6001.7000" test_ref="oval:gov.nist.fdcc.patch:tst:1158791"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.6001.7006" test_ref="oval:gov.nist.fdcc.patch:tst:1158792"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 11.0.6001.7100" test_ref="oval:gov.nist.fdcc.patch:tst:1158793"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.6001.7113" test_ref="oval:gov.nist.fdcc.patch:tst:1158794"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 11.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1158795"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.6002.18049" test_ref="oval:gov.nist.fdcc.patch:tst:1158796"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Wmvcore.dll version is greater than or equal to 11.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1158797"/>
                    <criterion comment="Wmvcore.dll version is less than 11.0.6002.22150" test_ref="oval:gov.nist.fdcc.patch:tst:1158798"/>
                </criteria>
                <criteria operator="AND" comment="Server 2008 SP2 (32-bit, 64-bit, ia-64)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Wmsserver.dll version is less than 9.5.6001.18281" test_ref="oval:gov.nist.fdcc.patch:tst:1158799"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11590" version="1" class="patch">
            <metadata>
                <title>MS09-056: Vulnerabilities in Windows CryptoAPI Could Allow Spoofing (974571)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <platform>Microsoft Windows 7</platform>
                    <platform>Microsoft Windows Server 2008 R2</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-056" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-056.mspx"/>
                <reference source="Microsoft" ref_id="KB974571" ref_url="http://support.microsoft.com/kb/974571"/>
                <reference source="CVE" ref_id="CVE-2009-2510" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2510"/>
                <reference source="CVE" ref_id="CVE-2009-2511" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2511"/>
                <description>Microsoft has released MS09-056 to address security issues in Windows XP, Windows Vista, Windows Server 2008, and Windows 7 as documented by CVE-200-</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of msasn1.dll is less than 5.1.2600.3624" test_ref="oval:gov.nist.fdcc.patch:tst:1159000"/>
                </criteria>
                <criteria operator="AND" comment="XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of msasn1.dll is less than 5.1.2600.5875" test_ref="oval:gov.nist.fdcc.patch:tst:1159001"/>
                </criteria>
                <criteria operator="AND" comment="XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of msasn1.dll is less than 5.2.3790.4584" test_ref="oval:gov.nist.fdcc.patch:tst:1159002"/>
                </criteria>
                <criteria operator="AND" comment="The OS is Windows Vista or Server 2008 (Gold, SP1, or SP2) and the GDR or LDR patch is installed">
                    <criteria operator="OR" comment="Either Windows Vista or Server 2008 is installed">
                        <extend_definition comment="Microsoft Windows Vista is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115289"/>
                        <extend_definition comment="Microsoft Windows Server 2008 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115290"/>
                    </criteria>
                    <criteria operator="OR" comment="The Gold, SP1, or SP2 GDR or LDR patch is installed">
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - GDR">
                            <!--<criterion comment="msasn1.dll version is greater than or equal to 6.0.6000.16000" test_ref="oval:gov.nist.fdcc.patch:tst:1159003"/>-->
                            <criterion comment="msasn1.dll version is less than to 6.0.6000.16922" test_ref="oval:gov.nist.fdcc.patch:tst:1159015"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.0.6000.20000" test_ref="oval:gov.nist.fdcc.patch:tst:1159016"/>
                            <criterion comment="msasn1.dll version is less than to 6.0.6000.21122" test_ref="oval:gov.nist.fdcc.patch:tst:1159017"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159003"/>
                            <criterion comment="msasn1.dll version is less than to 6.0.6001.18326" test_ref="oval:gov.nist.fdcc.patch:tst:1159007"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159004"/>
                            <criterion comment="msasn1.dll version is less than to 6.0.6001.22515" test_ref="oval:gov.nist.fdcc.patch:tst:1159008"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159005"/>
                            <criterion comment="msasn1.dll version is less than to 6.0.6002.18106" test_ref="oval:gov.nist.fdcc.patch:tst:1159009"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159006"/>
                            <criterion comment="msasn1.dll version is less than to 6.0.6002.22218" test_ref="oval:gov.nist.fdcc.patch:tst:1159010"/>
                        </criteria>
                    </criteria>
                </criteria>
                <criteria operator="AND" comment="The OS is Windows 7 or Server 2008 R2 (Gold) and the  GDR or LDR patch is installed">
                    <criteria operator="OR" comment="Either Windows 7 or Server 2008 R2 is installed">
                        <extend_definition comment="Microsoft Windows Vista is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115289"/>
                        <extend_definition comment="Microsoft Windows Server 2008 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115290"/>
                    </criteria>
                    <criteria operator="OR" comment="The (Gold) GDR or LDR patch is installed">
                        <criteria operator="AND" comment="Vista, Server 2008 R2 (Gold) - GDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.1.7600.16000" test_ref="oval:gov.nist.fdcc.patch:tst:1159011"/>
                            <criterion comment="msasn1.dll version is less than to 6.1.7600.16415" test_ref="oval:gov.nist.fdcc.patch:tst:1159013"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 R2 (Gold) - LDR">
                            <criterion comment="msasn1.dll version is greater than or equal to 6.1.7600.20000" test_ref="oval:gov.nist.fdcc.patch:tst:1159012"/>
                            <criterion comment="msasn1.dll version is less than to 6.1.7600.20518" test_ref="oval:gov.nist.fdcc.patch:tst:1159014"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11591" version="1" class="patch">
            <metadata>
                <title>MS09-057: Vulnerability in Indexing Service Could Allow Remote Code Execution (969059)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-057" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-057.mspx"/>
                <reference source="Microsoft" ref_id="KB969059" ref_url="http://support.microsoft.com/kb/969059"/>
                <reference source="CVE" ref_id="CVE-2009-2507" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2507"/>
                <description>Microsoft has released MS09-057 to address security issues in Windows XP as documented by CVE-2009-2507</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of query.dll is less than 5.1.2600.3602" test_ref="oval:gov.nist.fdcc.patch:tst:1159100"/>
                </criteria>
                <criteria operator="AND" comment="XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of query.dll is less than 5.1.2600.5847" test_ref="oval:gov.nist.fdcc.patch:tst:1159101"/>
                </criteria>
                <criteria operator="AND" comment="XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of query.dll is less than 5.2.3790.4554" test_ref="oval:gov.nist.fdcc.patch:tst:1159102"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11592" version="1" class="patch">
            <metadata>
                <title>MS09-058: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (971486)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-058" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-058.mspx"/>
                <reference source="Microsoft" ref_id="KB971486" ref_url="http://support.microsoft.com/kb/971486"/>
                <reference source="CVE" ref_id="CVE-2009-2515" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2515"/>
                <reference source="CVE" ref_id="CVE-2009-2516" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2516"/>
                <reference source="CVE" ref_id="CVE-2009-2517" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2517"/>
                <description>Microsoft has released MS09-058 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-2515, CVE-2009-2516, CVE-2009-2517</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of ntoskrnl.exe is less than 5.1.2600.3610" test_ref="oval:gov.nist.fdcc.patch:tst:1159200"/>
                </criteria>
                <criteria operator="AND" comment="XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of ntoskrnl.exe is less than 5.1.2600.5857" test_ref="oval:gov.nist.fdcc.patch:tst:1159201"/>
                </criteria>
                <criteria operator="AND" comment="XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of ntoskrnl.exe is less than 5.2.3790.4566" test_ref="oval:gov.nist.fdcc.patch:tst:1159202"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit,64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="ntoskrnl.exe version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159203"/>
                    <criterion comment="ntoskrnl.exe version is less than to 6.0.6001.18304" test_ref="oval:gov.nist.fdcc.patch:tst:1159207"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="ntoskrnl.exe version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159204"/>
                    <criterion comment="ntoskrnl.exe version is less than to 6.0.6001.22489" test_ref="oval:gov.nist.fdcc.patch:tst:1159208"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="ntoskrnl.exe version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159205"/>
                    <criterion comment="ntoskrnl.exe version is less than to 6.0.6002.18082" test_ref="oval:gov.nist.fdcc.patch:tst:1159209"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="ntoskrnl.exe version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159206"/>
                    <criterion comment="ntoskrnl.exe version is less than to 6.0.6002.22191" test_ref="oval:gov.nist.fdcc.patch:tst:1159210"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11593" version="1" class="patch">
            <metadata>
                <title>MS09-059: Vulnerability in Local Security Authority Subsystem Service Could Allow Denial of Service (975467)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <platform>Microsoft Windows 7</platform>
                    <platform>Microsoft Windows Server 2008 R2</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-059" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-059.mspx"/>
                <reference source="Microsoft" ref_id="KB975467" ref_url="http://support.microsoft.com/kb/975467"/>
                <reference source="CVE" ref_id="CVE-2009-2524" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2524"/>
                <description>Microsoft has released MS09-059 to address security issues in Windows XP, Windows Vista, Windows Server 2008, and Windows 7 as documented by CVE-2009-2524</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of Msv1_0.dll is less than 5.1.2600.3625" test_ref="oval:gov.nist.fdcc.patch:tst:1159300"/>
                </criteria>
                <criteria operator="AND" comment="XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of Msv1_0.dll is less than 5.1.2600.5876" test_ref="oval:gov.nist.fdcc.patch:tst:1159301"/>
                </criteria>
                <criteria operator="AND" comment="XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of Msv1_0.dll is less than 5.2.3790.4587" test_ref="oval:gov.nist.fdcc.patch:tst:1159302"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit,64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159303"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.0.6001.18330" test_ref="oval:gov.nist.fdcc.patch:tst:1159307"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159304"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.0.6001.22518" test_ref="oval:gov.nist.fdcc.patch:tst:1159308"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159305"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.0.6002.18111" test_ref="oval:gov.nist.fdcc.patch:tst:1159309"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159306"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.0.6002.22223" test_ref="oval:gov.nist.fdcc.patch:tst:1159310"/>
                </criteria>
                <criteria operator="AND" comment="7, Server 2008 R2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows 7 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:6165"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115286"/>
                        <extend_definition comment="Microsoft Windows 7 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5950"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115287"/>
                        <extend_definition comment="Microsoft Windows 7 (ia-64) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115281"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115288"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.1.7600.16000" test_ref="oval:gov.nist.fdcc.patch:tst:1159311"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.1.7600.16420" test_ref="oval:gov.nist.fdcc.patch:tst:1159313"/>
                </criteria>
                <criteria operator="AND" comment="7, Server 2008 R2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows 7 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:6165"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115286"/>
                        <extend_definition comment="Microsoft Windows 7 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5950"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115287"/>
                        <extend_definition comment="Microsoft Windows 7 (ia-64) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115281"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115288"/>
                    </criteria>
                    <criterion comment="Msv1_0.dll version is greater than or equal to 6.1.7600.20000" test_ref="oval:gov.nist.fdcc.patch:tst:1159312"/>
                    <criterion comment="Msv1_0.dll version is less than to 6.1.7600.20524" test_ref="oval:gov.nist.fdcc.patch:tst:1159314"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11594" version="1" class="patch">
            <metadata>
                <title>MS09-061: Vulnerabilities in the Microsoft .NET Common Language Runtime Could Allow Remote Code Execution (974378)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                    <platform>Microsoft Windows 7</platform>
                    <platform>Microsoft Windows Server 2008 R2</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-061" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-061.mspx"/>
                <reference source="Microsoft" ref_id="KB974378" ref_url="http://support.microsoft.com/kb/974378"/>
                <reference source="CVE" ref_id="CVE-2009-0090" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0090"/>
                <reference source="CVE" ref_id="CVE-2009-0091" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0091"/>
                <reference source="CVE" ref_id="CVE-2009-2497" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2497"/>
                <description>Microsoft has released MS09-061 to address security issues in Microsoft .NET Framework on Microsoft Windows XP, Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2 as documented by CVE-2009-0090, CVE-2009-0091, and CVE-2009-2497</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="(vista sp1/2 (32/64) OR 2008 RTM/sp2 (32/64) OR xp sp2/3 OR xp x64 sp2 OR 7 OR 2008 R2) AND .net 1.1 sp1">
                    <criteria operator="OR" comment="vista sp1/2 (32/64) OR 2008 RTM/sp2 (32/64) OR xp sp2/3 OR xp x64 sp2 OR 7 OR 2008 R2">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                        <extend_definition comment="Microsoft Windows 7 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:6165"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115286"/>
                        <extend_definition comment="Microsoft Windows 7 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5950"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115287"/>
                        <extend_definition comment="Microsoft Windows 7 (ia-64) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115281"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) R2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115288"/>
                    </criteria>
                    <extend_definition comment="Microsoft .NET Framework 1.1 Service Pack 1, or later, is Installed" definition_ref="oval:gov.nist.fdcc.patch:def:115285"/>
                    <criterion comment="the version of mscorlib.dll is less than 1.1.4322.2443" test_ref="oval:gov.nist.fdcc.patch:tst:1159400"/>
                </criteria>
                <criteria operator="AND" comment="(vista sp1 (32/64) OR 2008 RTM (32/64)) AND .net 2.0 sp1">
                    <criteria operator="OR" comment="vista sp1 (32/64) OR 2008 RTM (32/64)">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <extend_definition comment="Microsoft .NET Framework 2.0 Service Pack 1 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11580"/>
                    <criterion comment="mscorlib..dll version is less than to 2.0.50727.1873" test_ref="oval:gov.nist.fdcc.patch:tst:1159401"/>
                </criteria>
                <criteria operator="AND" comment="(xp sp3 OR xp x64 sp2) AND .net 2.0 sp1 OR .net 3.5">
                    <criteria operator="OR" comment="xp sp3 OR xp x64 sp2">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criteria operator="OR" comment=".net 2.0 sp1 OR .net 3.5">
                        <extend_definition comment="Microsoft .NET Framework 2.0 Service Pack 1 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11580"/>
                        <extend_definition comment="Microsoft .NET Framework 3.5 (Gold) is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11582"/>
                    </criteria>
                    <criterion comment="the version of mscorlib.dll is less than 2.0.50727.1873" test_ref="oval:gov.nist.fdcc.patch:tst:1159401"/>
                </criteria>
                <criteria operator="OR" comment="(vista sp1 (32/64) OR 2008 RTM (32/64) OR xp sp2/3 OR xp x64 sp2) AND .net 2.0 sp2 OR 3.5 sp1">
                    <criteria operator="AND" comment="xp sp2/3 OR xp x64 sp2 AND mscorlib.dll version is less than 2.0.50727.3603">
                        <criteria operator="OR" comment="xp sp2/3 OR xp x64 sp2">
                            <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                            <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                            <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                        </criteria>
                        <criteria operator="OR" comment=".net 2.0 sp2 OR 3.5 sp1">
                            <extend_definition comment="Microsoft .NET Framework 2.0 Service Pack 2, or later, is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11581"/>
                            <extend_definition comment="Microsoft .NET Framework 3.5 Service Pack 1, or later, is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11583"/>
                        </criteria>
                        <criterion comment="the version of mscorlib.dll is less than 2.0.50727.3603" test_ref="oval:gov.nist.fdcc.patch:tst:1159402"/>
                    </criteria>
                    <criteria operator="AND" comment="vista sp1 (32/64) OR 2008 RTM (32/64) AND  the GDR or LDR update has been applied">
                        <criteria operator="OR" comment="vista sp1 (32/64) OR 2008 RTM (32/64)">
                            <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                            <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                            <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                            <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                            <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                        </criteria>
                        <criteria operator="OR" comment=".net 2.0 sp2 OR 3.5 sp1">
                            <extend_definition comment="Microsoft .NET Framework 2.0 Service Pack 2, or later, is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11581"/>
                            <extend_definition comment="Microsoft .NET Framework 3.5 Service Pack 1, or later, is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11583"/>
                        </criteria>
                        <criteria operator="OR" comment="GDR or LDR update has been applied">
                            <criterion comment="the version of mscorlib.dll is less than 2.0.50727.3603" test_ref="oval:gov.nist.fdcc.patch:tst:1159402"/>
                            <criteria operator="AND" comment="LDR">
                                <criterion comment="the version of mscorlib.dll version is greater than or equal to 2.0.50727.4000" test_ref="oval:gov.nist.fdcc.patch:tst:1159403"/>
                                <criterion comment="the version of mscorlib.dll is less than 2.0.50727.4062" test_ref="oval:gov.nist.fdcc.patch:tst:1159404"/>
                            </criteria>
                        </criteria>
                    </criteria>
                </criteria>
                <criteria operator="AND" comment="(vista sp2 (32/64) OR 2008 sp2 (32/64)) AND .net 2.0 sp2">
                    <criteria operator="OR" comment="vista sp2 (32/64) OR 2008 sp2 (32/64)">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criteria operator="OR" comment="GDR or LDR update has been applied">
                        <criterion comment="the version of mscorlib.dll is less than 2.0.50727.4200" test_ref="oval:gov.nist.fdcc.patch:tst:1159405"/>
                        <criteria operator="AND" comment="LDR">
                            <criterion comment="the version of mscorlib.dll version is greater than or equal to 2.0.50727.4300" test_ref="oval:gov.nist.fdcc.patch:tst:1159406"/>
                            <criterion comment="the version of mscorlib.dll is less than 2.0.50727.4400" test_ref="oval:gov.nist.fdcc.patch:tst:1159407"/>
                        </criteria>
                    </criteria>
                    <extend_definition comment="Microsoft .NET Framework 2.0 Service Pack 2, or later, is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11581"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11595" version="2" class="patch">
            <metadata>
                <title>MS09-062: Vulnerabilities in GDI+ Could Allow Remote Code Execution (957488)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-062" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx"/>
                <reference source="Microsoft" ref_id="kb957488" ref_url="http://support.microsoft.com/kb/957488"/>
                <reference source="CVE" ref_id="CVE-2009-2500" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2500"/>
                <reference source="CVE" ref_id="CVE-2009-2501" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2501"/>
                <reference source="CVE" ref_id="CVE-2009-2502" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2502"/>
                <reference source="CVE" ref_id="CVE-2009-2503" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2503"/>
                <reference source="CVE" ref_id="CVE-2009-2504" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2504"/>
                <reference source="CVE" ref_id="CVE-2009-2504" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2518"/>
                <reference source="CVE" ref_id="CVE-2009-2504" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2528"/>
                <reference source="CVE" ref_id="CVE-2009-2504" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3126"/>
                <description>Microsoft has released MS09-062 to address security issues in Windows XP; Windows Vista and Windows Vista Service Pack 1; Windows Vista x64 Edition and Windows Vista x64 Edition Service Pack 1; Windows Server 2008 for 32-bit Systems, Windows Server 2008 for x64-based Systems, and Windows Server 2008 for Itanium-based Systems as documented by CVE-2009-2500, CVE-2009-2501, CVE-2009-2502, CVE-2009-2503, CVE-2009-2504, CVE-2009-2518, CVE-2009-2528, and CVE-2009-3126</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP SP2/SP3 (32-bit/64-bit)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criterion comment="the version of gdiplus.dll is less than 5.2.6001.22319" test_ref="oval:gov.nist.fdcc.patch:tst:1159503"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit,64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="gdiplus.dll version is greater than or equal to 5.2.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1159500"/>
                    <criterion comment="gdiplus.dll version is less than to 5.2.6001.18175" test_ref="oval:gov.nist.fdcc.patch:tst:1159502"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="gdiplus.dll version is greater than or equal to 5.2.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1159501"/>
                    <criterion comment="gdiplus.dll version is less than to 5.2.6001.22319" test_ref="oval:gov.nist.fdcc.patch:tst:1159503"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11603" version="1" class="patch">
            <metadata>
                <title>MS09-052: Vulnerability in Windows Media Player Could Allow Remote Code Execution (974112)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-052" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-052.mspx"/>
                <reference source="Microsoft" ref_id="KB974112" ref_url="http://support.microsoft.com/kb/974112"/>
                <reference source="CVE" ref_id="CVE-2009-2527" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2527"/>
                <description>Microsoft has released MS09-052 to address security issues in Windows XP as documented by CVE-2009-2527</description>
            </metadata>
            <criteria operator="AND">
                <criteria operator="OR">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                </criteria>
                <criterion comment="strmdll.dll version is less than 4.1.0.3938" test_ref="oval:gov.nist.fdcc.patch:tst:116030"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11601" version="1" class="patch">
            <metadata>
                <title>MS09-051: Vulnerabilities in Windows Media Runtime Could Allow Remote Code Execution (975682)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-051" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-051.mspx"/>
                <reference source="Microsoft" ref_id="KB975682" ref_url="http://support.microsoft.com/kb/975682"/>
                <reference source="CVE" ref_id="CVE-2009-0555" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0555"/>
                <reference source="CVE" ref_id="CVE-2009-2525" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2525"/>
                <description>Microsoft has released MS09-051 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-0555 and CVE-2009-2525</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                    <criterion comment="the version of wmspdmod.dll is less than 9.0.0.3269" test_ref="oval:gov.nist.fdcc.patch:tst:116010"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <extend_definition comment="Windows Media Player v9.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115231"/>
                    <criterion comment="the version of wmspdmod.dll is less than 9.0.0.4505" test_ref="oval:gov.nist.fdcc.patch:tst:116011"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="the version of wmspdmod.dll is less than 10.0.0.3704" test_ref="oval:gov.nist.fdcc.patch:tst:116012"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="wmspdmod.dll version is greater than or equal to 10.0.0.4000" test_ref="oval:gov.nist.fdcc.patch:tst:116013"/>
                    <criterion comment="the version of wmspdmod.dll is less than 10.0.0.4070" test_ref="oval:gov.nist.fdcc.patch:tst:116014"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="wmspdmod.dll version is greater than or equal to 10.0.0.4300" test_ref="oval:gov.nist.fdcc.patch:tst:116015"/>
                    <criterion comment="the version of wmspdmod.dll is less than 10.0.0.4365" test_ref="oval:gov.nist.fdcc.patch:tst:116016"/>
                </criteria>
                <criteria operator="AND">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    </criteria>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
                    <criterion comment="the version of wmspdmod.dll is less than 11.0.5721.5263" test_ref="oval:gov.nist.fdcc.patch:tst:116017"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="the version of wmspdmod.dll is less than 10.0.0.3819" test_ref="oval:gov.nist.fdcc.patch:tst:116018"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v10.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115232"/>
                    <criterion comment="wmspdmod.dll version is greater than or equal to 10.0.0.4000" test_ref="oval:gov.nist.fdcc.patch:tst:116019"/>
                    <criterion comment="the version of wmspdmod.dll is less than 10.0.0.4004" test_ref="oval:gov.nist.fdcc.patch:tst:1160101"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <extend_definition comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
                    <criterion comment="wmspdmod.dll version is less than 11.0.5721.5263" test_ref="oval:gov.nist.fdcc.patch:tst:1160102"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115275"/>
                    <criterion comment="msaud32.acm version is less than 8.0.0.4502" test_ref="oval:gov.nist.fdcc.patch:tst:1160110"/>
                </criteria>
                <criteria operator="AND" comment="The OS is Windows Vista or Server 2008 (Gold, SP1, or SP2) and the GDR or LDR patch is installed">
                    <criteria operator="OR" comment="Either Windows Vista or Server 2008 is installed">
                        <extend_definition comment="Microsoft Windows Vista is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115289"/>
                        <extend_definition comment="Microsoft Windows Server 2008 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115290"/>
                    </criteria>
                    <criteria operator="OR" comment="The Gold, SP1, or SP2 GDR or LDR patch is installed">
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="wmspdmod.dll version is less than 11.0.6000.6350" test_ref="oval:gov.nist.fdcc.patch:tst:1160111"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="wmspdmod.dll version is greater than or equal to 11.0.6000.6500" test_ref="oval:gov.nist.fdcc.patch:tst:1160112"/>
                            <criterion comment="wmspdmod.dll version is less than 11.0.6000.6509" test_ref="oval:gov.nist.fdcc.patch:tst:1160113"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="wmspdmod.dll version is greater than or equal to 11.0.6001.7000" test_ref="oval:gov.nist.fdcc.patch:tst:1160103"/>
                            <criterion comment="wmspdmod.dll version is less than 11.0.6001.7005" test_ref="oval:gov.nist.fdcc.patch:tst:1160104"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="wmspdmod.dll version is greater than or equal to 11.0.6001.7100" test_ref="oval:gov.nist.fdcc.patch:tst:1160105"/>
                            <criterion comment="wmspdmod.dll version is less than 11.0.6001.7111" test_ref="oval:gov.nist.fdcc.patch:tst:1160106"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="wmspdmod.dll version is greater than or equal to 11.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:1160107"/>
                            <criterion comment="wmspdmod.dll version is less than 11.0.6002.18034" test_ref="oval:gov.nist.fdcc.patch:tst:1160108"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="wmspdmod.dll version is greater than or equal to 11.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:1160109"/>
                            <criterion comment="wmspdmod.dll version is less than 11.0.6002.22131" test_ref="oval:gov.nist.fdcc.patch:tst:1160100"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11602" version="1" class="patch">
            <metadata>
                <title>MS09-053: Vulnerabilities in FTP Service for Internet Information Services Could Allow Remote Code Execution (975254)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-053" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-053.mspx"/>
                <reference source="Microsoft" ref_id="KB975254" ref_url="http://support.microsoft.com/kb/975254"/>
                <reference source="CVE" ref_id="CVE-2009-2521" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2521"/>
                <reference source="CVE" ref_id="CVE-2009-3023" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3023"/>
                <description>Microsoft has released MS09-053 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-2521 and CVE-2009-3023</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="The FTP component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600002"/>
                    <criterion comment="ftpsvc2.dll version is less than 6.0.2600.3624" test_ref="oval:gov.nist.fdcc.patch:tst:116020"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="The FTP component is installed" test_ref="oval:gov.nist.fdcc.patch:tst:4600002"/>
                    <criterion comment="ftpsvc2.dll version is less than  6.0.2600.5875" test_ref="oval:gov.nist.fdcc.patch:tst:116021"/>
                </criteria>
                <criteria operator="AND">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="ftpsvc2.dll version is less than 6.0.3790.4584  " test_ref="oval:gov.nist.fdcc.patch:tst:116022"/>
                </criteria>
                <criteria operator="AND" comment="The OS is Windows Vista or Server 2008 (Gold, SP1, or SP2) and the GDR or LDR patch is installed">
                    <criteria operator="OR" comment="Either Windows Vista or Server 2008 is installed">
                        <extend_definition comment="Microsoft Windows Vista is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115289"/>
                        <extend_definition comment="Microsoft Windows Server 2008 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115290"/>
                    </criteria>
                    <criteria operator="OR" comment="The Gold, SP1, or SP2 GDR or LDR patch is installed">
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6000.16000" test_ref="oval:gov.nist.fdcc.patch:tst:1160201"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6000.16923" test_ref="oval:gov.nist.fdcc.patch:tst:1160202"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 Gold (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6000.20000" test_ref="oval:gov.nist.fdcc.patch:tst:1160203"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6000.21123" test_ref="oval:gov.nist.fdcc.patch:tst:1160204"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116023"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6001.18327" test_ref="oval:gov.nist.fdcc.patch:tst:116024"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116025"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6001.22516" test_ref="oval:gov.nist.fdcc.patch:tst:116026"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116027"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6002.18107" test_ref="oval:gov.nist.fdcc.patch:tst:116028"/>
                        </criteria>
                        <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                            <criterion comment="ftpsvc2.dll version is greater than or equal to 7.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116029"/>
                            <criterion comment="ftpsvc2.dll version is less than 7.0.6002.22219" test_ref="oval:gov.nist.fdcc.patch:tst:1160200"/>
                        </criteria>
                    </criteria>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11621" version="1" class="patch">
            <metadata>
                <title>MS09-065: Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (969947)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-065" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-065.mspx"/>
                <reference source="Microsoft" ref_id="KB969947" ref_url="http://support.microsoft.com/kb/969947"/>
                <reference source="CVE" ref_id="CVE-2009-1127" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1127"/>
                <reference source="CVE" ref_id="CVE-2009-2513" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2513"/>
                <reference source="CVE" ref_id="CVE-2009-2514" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2514"/>
                <description>Microsoft has released MS09-065 to address security issues in Windows XP, Windows Vista, and Windows Server 2008 as documented by CVE-2009-1127, CVE-2009-2513, and CVE-2009-2514</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP (32-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                    <criterion comment="the version of Win32k.sys is less than 5.1.2600.3614" test_ref="oval:gov.nist.fdcc.patch:tst:116210"/>
                </criteria>
                <criteria operator="AND" comment="XP (32-bit) SP3">
                    <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                    <criterion comment="the version of Win32k.sys is less than 5.1.2600.5863" test_ref="oval:gov.nist.fdcc.patch:tst:116211"/>
                </criteria>
                <criteria operator="AND" comment="XP (64-bit) SP2">
                    <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    <criterion comment="the version of Win32k.sys is less than 5.2.3790.4571" test_ref="oval:gov.nist.fdcc.patch:tst:116212"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit,64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Win32k.sys version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116213"/>
                    <criterion comment="Win32k.sys version is less than to 6.0.6001.18311" test_ref="oval:gov.nist.fdcc.patch:tst:116214"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:4873"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP1 is installed" definition_ref="oval:org.mitre.oval:def:5254"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Win32k.sys version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116215"/>
                    <criterion comment="Win32k.sys version is less than to 6.0.6001.22497" test_ref="oval:gov.nist.fdcc.patch:tst:116216"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Win32k.sys version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116217"/>
                    <criterion comment="Win32k.sys version is less than to 6.0.6002.18091" test_ref="oval:gov.nist.fdcc.patch:tst:116218"/>
                </criteria>
                <criteria operator="AND" comment="Vista, Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Vista (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11559"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Vista (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11560"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Win32k.sys version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116219"/>
                    <criterion comment="Win32k.sys version is less than to 6.0.6002.22200" test_ref="oval:gov.nist.fdcc.patch:tst:1162191"/>
                </criteria>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11622" version="1" class="patch">
            <metadata>
                <title>MS09-066: Vulnerability in Active Directory Could Allow Denial of Service (973309)</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="Microsoft" ref_id="MS09-066" ref_url="http://www.microsoft.com/technet/security/bulletin/MS09-066.mspx"/>
                <reference source="Microsoft" ref_id="KB973309" ref_url="http://support.microsoft.com/kb/973309"/>
                <reference source="Microsoft" ref_id="KB973037" ref_url="http://support.microsoft.com/kb/973037"/>
                <reference source="Microsoft" ref_id="KB973039" ref_url="http://support.microsoft.com/kb/973039"/>
                <reference source="CVE" ref_id="CVE-2009-1928" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1928"/>
                <description>Microsoft has released MS09-066 to address security issues in Windows XP and Windows Server 2008 as documented by CVE-2009-1928</description>
            </metadata>
            <criteria operator="OR">
                <criteria operator="AND" comment="XP SP2/SP3 (32-bit/64-bit)">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115276"/>
                        <extend_definition comment="Microsoft Windows XP (32-bit) SP3 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115278"/>
                        <extend_definition comment="Microsoft Windows XP (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115277"/>
                    </criteria>
                    <criterion comment="An Adam Instance has been created" test_ref="oval:gov.nist.fdcc.patch:tst:116229"/>
                    <criterion comment="the version of Adamdsa.dll is less than 1.1.3790.4569" test_ref="oval:gov.nist.fdcc.patch:tst:116220"/> 
                </criteria>
                <criteria operator="AND" comment="Server 2008 SP1 (32-bit,64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Ntdsai.dll version is greater than or equal to 6.0.6001.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116221"/>
                    <criterion comment="Ntdsai.dll version is less than to 6.0.6001.18281" test_ref="oval:gov.nist.fdcc.patch:tst:116222"/>
                </criteria>
                <criteria operator="AND" comment="Server 2008 SP1 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) is installed" definition_ref="oval:org.mitre.oval:def:4870"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) is installed" definition_ref="oval:org.mitre.oval:def:5356"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) is installed" definition_ref="oval:org.mitre.oval:def:5667"/>
                    </criteria>
                    <criterion comment="Ntdsai.dll version is greater than or equal to 6.0.6001.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116223"/>
                    <criterion comment="Ntdsai.dll version is less than to 6.0.6001.22461" test_ref="oval:gov.nist.fdcc.patch:tst:116224"/>
                </criteria>
                <criteria operator="AND" comment="Server 2008 SP2 (32-bit, 64-bit, ia-64) - GDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Ntdsai.dll version is greater than or equal to 6.0.6002.18000" test_ref="oval:gov.nist.fdcc.patch:tst:116225"/>
                    <criterion comment="Ntdsai.dll version is less than to 6.0.6002.18058" test_ref="oval:gov.nist.fdcc.patch:tst:116226"/>
                </criteria>
                <criteria operator="AND" comment="Server 2008 SP2 (32-bit, 64-bit, ia-64) - LDR">
                    <criteria operator="OR">
                        <extend_definition comment="Microsoft Windows Server 2008 (32-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11558"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (64-bit) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11561"/>
                        <extend_definition comment="Microsoft Windows Server 2008 (ia-64) SP2 is installed" definition_ref="oval:gov.nist.fdcc.patch:def:11562"/>
                    </criteria>
                    <criterion comment="Ntdsai.dll version is greater than or equal to 6.0.6002.22000" test_ref="oval:gov.nist.fdcc.patch:tst:116227"/>
                    <criterion comment="Ntdsai.dll version is less than to 6.0.6002.22162" test_ref="oval:gov.nist.fdcc.patch:tst:116228"/>
                </criteria>
            </criteria>
        </definition>
        <!--====================================================================================================-->
        <!--=====================================  EXTENDED DEFINITIONS  =========================================-->
        <!--====================================================================================================-->
        <definition id="oval:gov.nist.fdcc.patch:def:115231" version="1" class="inventory">
            <metadata>
                <title>Windows Media Player 9.0 is installed.</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Media Player</product>
                </affected>
                <description>Windows Media Player v9.0 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Windows Media Player 9 is installed" test_ref="oval:gov.nist.fdcc.patch:tst:115235"/>
                <criterion negate="true" comment="Windows Media Player 10 is installed" test_ref="oval:gov.nist.fdcc.patch:tst:115236"/>
                <extend_definition negate="true" comment="Windows Media Player 11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115232" version="1" class="inventory">
            <metadata>
                <title>Windows Media Player 10.0 is installed.</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <product>Media Player</product>
                </affected>
                <description>Windows Media Player v10.0 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Windows Media Player 10 is installed" test_ref="oval:gov.nist.fdcc.patch:tst:115236"/>
                <extend_definition negate="true" comment="Windows Media Player v11.0 is installed." definition_ref="oval:gov.nist.fdcc.patch:def:115233"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115233" version="1" class="inventory">
            <metadata>
                <title>Windows Media Player 11.0 is installed.</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>Media Player</product>
                </affected>
                <description>Windows Media Player 11.0 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="PlayerVersion is greater than 11.0.0.0" test_ref="oval:gov.nist.fdcc.patch:tst:115237"/>
                <criterion comment="PlayerVersion is less than 12.0.0.0" test_ref="oval:gov.nist.fdcc.patch:tst:115238"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115234" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows Mail is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows Vista</platform>
                    <product>Windows Mail</product>
                </affected>
                <reference source="CPE" ref_id="cpe:/a:microsoft:windows_mail"/>
                <description>Microsoft Windows Mail is installed</description>
            </metadata>
            <criteria>
                <criterion comment="Windows Mail is installed" test_ref="oval:gov.nist.fdcc.patch:tst:115270"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115271" version="1" class="inventory">
            <metadata>
                <title>Microsoft .NET Framework 1.0 Service Pack 2 is Installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>.NET Framework</product>
                </affected>
                <description>Microsoft .NET Framework 1.0 Service Pack 2 is Installed</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Mscorlib.dll version is greater than or equal to 1.0.3705.288" test_ref="oval:gov.nist.fdcc.patch:tst:115271"/>
                <criterion comment="Mscorlib.dll version is less than 1.0.3705.6018" test_ref="oval:gov.nist.fdcc.patch:tst:115272"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115272" version="1" class="inventory">
            <metadata>
                <title>Microsoft .NET Framework 1.0 Service Pack 3, or later, is Installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>.NET Framework</product>
                </affected>
                <description>Microsoft .NET Framework 1.0 Service Pack 3, or later, is Installed</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Mscorlib.dll version is greater than or equal to 1.0.3705.6018" test_ref="oval:gov.nist.fdcc.patch:tst:115273"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115273" version="1" class="inventory">
            <metadata>
                <title>Microsoft .NET Framework 1.1 (Gold) is Installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <product>.NET Framework</product>
                </affected>
                <description>Microsoft .NET Framework 1.1 (Gold) is Installed</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="Mscorlib.dll version is greater than or equal to 1.1.4322.573" test_ref="oval:gov.nist.fdcc.patch:tst:115274"/>
                <criterion comment="Mscorlib.dll version is less than 1.1.4322.2032" test_ref="oval:gov.nist.fdcc.patch:tst:115275"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115274" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows XP SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_xp::sp2"/>
                <description>The operating system installed on the system is Microsoft Windows XP SP2.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115275"/>
                <criterion comment="Win2K/XP/2003 service pack 2 is installed" test_ref="oval:org.mitre.oval:tst:3019"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115275" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows XP is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_xp"/>
                <description>The operating system installed on the system is Microsoft Windows XP.</description>
            </metadata>
            <criteria operator="AND">
                <criterion comment="the installed operating system is part of the Microsoft Windows family" test_ref="oval:org.mitre.oval:tst:99"/>
                <criterion comment="Windows XP is installed" test_ref="oval:gov.nist.fccc.patch:tst:57914"/>
                <criterion comment="Currentversion = 5.1 or 5.2" test_ref="oval:gov.nist.fdcc.patch:tst:115300"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115276" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows XP (32-bit) SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_xp::sp2:x86"/>
                <description>A version of Microsoft Windows XP (32-bit) SP2 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115275"/>
                <criterion comment="a version of Windows for the x86 architecture is installed" test_ref="oval:org.mitre.oval:tst:3823"/>
                <criterion comment="Win2K/XP/2003 service pack 2 is installed" test_ref="oval:org.mitre.oval:tst:3019"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115277" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows XP (64-bit) SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_xp::sp2:x64"/>
                <description>A version of Microsoft Windows XP (64-bit) SP2 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115275"/>
                <criterion comment="a version of Windows for the x64 architecture is installed" test_ref="oval:org.mitre.oval:tst:3653"/>
                <criterion comment="Win2K/XP/2003 service pack 2 is installed" test_ref="oval:org.mitre.oval:tst:3019"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115278" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows XP (32-bit) SP3 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_xp::sp3:x86"/>
                <description>A version of Microsoft Windows XP (x86) Service Pack 3 is installed.</description>
            </metadata>
            <criteria operator="AND">
                <extend_definition comment="Microsoft Windows XP is installed" definition_ref="oval:gov.nist.fdcc.patch:def:115275"/>
                <criterion comment="a version of Windows for the x86 architecture is installed" test_ref="oval:org.mitre.oval:tst:3823"/>
                <criterion comment="Win2K/XP/2003 service pack 3 is installed" test_ref="oval:org.mitre.oval:tst:7814"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:115279" version="1" class="inventory">
            <metadata>
                <title>Microsoft IIS is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows XP</platform>
                    <platform>Microsoft Windows Vista</platform>
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/a:microsoft:iis"/>
                <description>The application Microsoft IIS is installed.</description>
            </metadata>
            <criteria>
                <criterion comment="IIS registry key exists" test_ref="oval:gov.nist.fdcc.patch:tst:115302"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11558" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows Server 2008 (32-bit) SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows Server 2008</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_2008:::x86"/>
                <description>The operating system installed on the system is Microsoft Windows Server 2008 (32-bit) SP2</description>
            </metadata>
            <criteria>
                <criterion comment="the installed operating system is part of the Microsoft Windows family" test_ref="oval:org.mitre.oval:tst:99"/>
                <criterion comment="Windows Server 2008 is installed" test_ref="oval:org.mitre.oval:tst:7697"/>
                <criterion comment="a version of Windows for the x86 architecture is installed" test_ref="oval:org.mitre.oval:tst:3823"/>
                <criterion comment="Win2K/XP/2003/Vista/2008 service pack 2 is installed" test_ref="oval:org.mitre.oval:tst:3019"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11559" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows Vista (32-bit) SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows Vista</platform>
                </affected>
                <reference source="CPE" ref_id="cpe:/o:microsoft:windows_vista::sp1:x86"/>
                <description>The operating system installed on the system is Microsoft Windows Vista (32-bit) Service Pack 2</description>
            </metadata>
            <criteria>
                <criterion comment="the installed operating system is part of the Microsoft Windows family" test_ref="oval:org.mitre.oval:tst:99"/>
                <criterion comment="Windows Vista is installed" test_ref="oval:org.mitre.oval:tst:7914"/>
                <criterion comment="a version of Windows for the x86 architecture is installed" test_ref="oval:org.mitre.oval:tst:3823"/>
                <criterion comment="Win2K/XP/2003/Vista/2008 service pack 2 is installed" test_ref="oval:org.mitre.oval:tst:3019"/>
            </criteria>
        </definition>
        <definition id="oval:gov.nist.fdcc.patch:def:11560" version="1" class="inventory">
            <metadata>
                <title>Microsoft Windows Vista (64-bit) SP2 is installed</title>
                <affected family="windows">
                    <platform>Microsoft Windows Vista</platform>
                </affected>
      