It's about making sure people are protected. If I'm wrong, then we need to get Microsoft to fix what is not working as it should be. If I'm right, then it's just a matter of reoffered updates that should be reinstalled. Bottom line Microsoft does indeed intend that anyone without KB2919355 to get the updates they are supposed to have. So if either one of us is wrong, we'll get it fixed up.
I'm testing again on a clean new 8.1 without KB2919355. First patching I get 45 updates of which there are three updates specifically listed as being offered up to those WITHOUT KB2919355:
- KB2961908 without KB2919355
- KB2962123
- KB2964757
After installing KB 2919355 you get to replace these
http://support.microsoft.com/default.aspx?scid=kb;en-us;2920189 which is exactly the same thing as http://support.microsoft.com/default.aspx?scid=kb;en-us;2961908 except 2961908 is for those without KB2919355
Same for KB2962123. After installing KB2919355 you get KB2965065 both patch https://technet.microsoft.com/library/security/ms14-027
They have to replace bits post KB2919355, but it's the same vulnerability being patched.
http://support.microsoft.com/default.aspx?scid=kb;en-us;2964757 is replaced by 2962140
(http://support.microsoft.com/kb/2962140/ )
Description of the security update for Juniper Networks Windows in-box Junos Pulse client for systems that have update 2919355 installed: May 5, 2014
(http://support.microsoft.com/kb/2964757/ )
Description of the security update for Juniper Networks Windows in-box Junos Pulse client for systems that do not have update 2919355 installed: May 5, 2014