A mere 5 months after its initial release, Microsoft has made update KB 2264107 available through Microsoft Update. Previously it had been available only as a direct download. This patch was created to control the DLL search path algorithm. As I understand it deploying the patch only gives you the ability to then deploy a registry key to restrict dll preloading.
Qualys has been showing this patch as a level 3 (out of 5) vulnerability so I wanted to get this patch deployed to improve the vulnerability statistics.
I already deployed this patch to my XP systems using SCUP, but I hadn’t been able to deploy MSU style patches used by Windows 7 and Windows 2008 using this method. I’m glad they’ve finally made this update available.