The revisions relate to holes that could allow an attacker to run code remotely on the machine or take control of it if a user opened a malicious media file.
One of the updates is for Windows 2000, XP, Server 2003 and Vista. The other update covers those systems, as well as Server 2008.