Microsoft August 2025 Patch Tuesday: Multiple Critical Elevation-of-Privilege Vulnerabilities
Summary
Hide ▲
Show ▼
Microsoft's August 2025 Patch Tuesday addressed 111 vulnerabilities, including 44 elevation-of-privilege (EoP) flaws and 35 remote code execution (RCE) vulnerabilities. The update also fixed 18 information disclosure flaws, 8 spoofing defects, and 4 denial-of-service issues. Critical issues included EoP bugs in Windows Hyper-V, Microsoft SQL Server, and Azure OpenAI, as well as RCE vulnerabilities in SharePoint and Windows Graphics Component. The update included a fix for CVE-2025-53779, a publicly known Windows Kerberos EoP flaw dubbed BadSuccessor, disclosed in May 2025. The update did not include any actively exploited bugs, marking the second consecutive month without such vulnerabilities. Security experts recommended immediate patching for high-severity issues, especially those in core system components and widely used services like SharePoint and SQL Server. However, the August 2025 security updates caused failures in reset and recovery operations on Windows 10 and older versions of Windows 11. Microsoft released emergency out-of-band updates on August 19, 2025, to resolve this issue. The emergency updates are available as optional updates via Windows Update and Windows Update for Business, or can be downloaded and installed manually from the Microsoft Update Catalog. Additionally, the August 2025 security updates caused severe lag and stuttering issues with NDI streaming software on some Windows 10 and Windows 11 systems. The issues affected applications such as OBS (Open Broadcast Software) and NDI Tools, especially when 'Display Capture' was enabled on the source PC. A temporary workaround involved changing the NDI Receive Mode to use TCP or UDP instead of RUDP. Microsoft resolved a known issue causing Windows upgrades to fail with 0x8007007F errors on some Windows 11 and Windows Server systems. The affected upgrade paths included Windows 10 1809, 21H2, and 22H2 to Windows 11 versions 23H2 and 22H2, and Windows Server 2016 to Windows Server 2019 or 2022, and Windows Server 2019 to Windows Server 2022. The issue was resolved as of August 15, 2025, and users were advised to retry the upgrade process if they encountered the error. The KB5064081 update introduced a new method for displaying CPU usage in Task Manager, standardizing CPU reporting across the application. The update included new Recall features and a redesigned Windows Hello interface. The update addressed an issue that prevented some system recovery features from working properly due to a temporary file sharing conflict. The update fixed an issue in Resilient File System (ReFS) where using backup apps with large files could sometimes exhaust system memory. The update resolved an issue with the Chinese (Simplified) Input Method Editor (IME) where some extended characters appeared as empty boxes. The update addressed an issue that prevented typing on the touch keyboard when using the Microsoft Changjie, Microsoft Bopomofo, or Microsoft Japanese Input Method Editors (IMEs). The update fixed an issue that slowed application installation on ARM64 devices. The update included fixes for audio and video performance issues when using Network Device Interface (NDI) to stream or transfer feeds between PCs. The update was part of the company's optional non-security preview update schedule, which releases updates at the end of each month to test new fixes and features coming to the next month's Patch Tuesday. The KB5065426 and KB5065431 cumulative updates for Windows 11 introduce new features and improvements, including a redesigned Windows Hello interface and enhanced passkey features. The updates include a new Recall feature that opens to a personalized homepage, highlighting recent activity and top-used apps and websites. The updates fix issues with the taskbar preview thumbnail, Search on the taskbar, and the lock screen widgets. The updates introduce a new navigation bar for quick access to Home, Timeline, Feedback, and Settings in the Recall feature. The updates include a new grid view in Search on the taskbar to help users quickly identify desired images. The updates provide clearer status information in Search on the taskbar, including progress notices and file availability status. The updates introduce a new visual experience for the Discover feed on the Widgets Board, including Copilot-curated stories. The updates include a new Windows Backup for Organizations feature, providing enterprise-grade backup and restore capabilities. The updates address an issue with the Microsoft Pluton Cryptographic Provider, resolving error messages in Windows Event Viewer. The updates fix issues with live captions, input methods, and various underlying system components. The September 2025 Windows security update fixed issues caused by the August 2025 updates, which triggered unexpected UAC prompts and app installation problems for non-admin users across all Windows versions. The issue was due to a security patch for CVE-2025-50173, a Windows Installer privilege escalation vulnerability. The September update reduces the scope of UAC prompts for MSI repairs and allows IT admins to disable UAC prompts for specific apps.
Timeline
-
10.09.2025 15:02 2 articles · 19d ago
September 2025 Windows Security Update Fixes UAC Prompts and App Installation Issues
The September 2025 Windows security update addresses issues caused by the August 2025 updates, which triggered unexpected UAC prompts and app installation problems for non-admin users across all Windows versions. The problem stemmed from a security patch for CVE-2025-50173, a Windows Installer privilege escalation vulnerability. The September update reduces the scope of UAC prompts for MSI repairs and provides IT administrators with the ability to disable UAC prompts for specific apps by adding them to an allowlist. The affected platforms include Windows 11 versions 24H2, 23H2, and 22H2; Windows 10 versions 22H2, 21H2, 1809, and Enterprise LTSC 2019, 2016, and 2015 LTSB; and Windows Server 2025, 2022, 2019, 2016, 2012 R2, and 2012.
Show sources
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
09.09.2025 20:37 1 articles · 20d ago
KB5065426 and KB5065431 cumulative updates for Windows 11 released
The KB5065426 and KB5065431 cumulative updates for Windows 11 introduce several new features and improvements. These updates include a redesigned Windows Hello interface, enhanced passkey features, and a new Recall feature that opens to a personalized homepage. The updates also fix various issues with the taskbar preview thumbnail, Search on the taskbar, and the lock screen widgets. Additionally, the updates introduce a new navigation bar for quick access to Home, Timeline, Feedback, and Settings in the Recall feature. The updates include a new grid view in Search on the taskbar to help users quickly identify desired images and provide clearer status information, including progress notices and file availability status. The updates also introduce a new visual experience for the Discover feed on the Widgets Board, including Copilot-curated stories. The updates include a new Windows Backup for Organizations feature, providing enterprise-grade backup and restore capabilities.
Show sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
29.08.2025 21:02 3 articles · 1mo ago
Microsoft resolves CertificateServicesClient error messages in Windows 11 24H2
The KB5065426 and KB5065431 cumulative updates for Windows 11 introduce a redesigned Windows Hello interface and enhanced passkey features. The updates also address an issue with the Microsoft Pluton Cryptographic Provider, resolving error messages in Windows Event Viewer. The updates fix issues with live captions, input methods, and various underlying system components.
Show sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
22.08.2025 15:25 1 articles · 1mo ago
Microsoft August 2025 Patch Tuesday: NDI Streaming Issues on Windows 10 and 11
The August 2025 security updates are causing severe lag and stuttering issues with NDI streaming software on some Windows 10 and Windows 11 systems. The issues affect applications such as OBS (Open Broadcast Software) and NDI Tools, especially when 'Display Capture' is enabled on the source PC. The problems are triggered by the KB5063878 and KB5063709 security updates on Windows 11 24H2 users and Windows 10 21H2/22H2 devices, respectively. The NDI team confirmed the issue, stating that the buggy Windows updates cause NDI traffic to drop unexpectedly, affecting RUDP connections. A temporary workaround involves changing the NDI Receive Mode to use TCP or UDP instead of RUDP.
Show sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
-
20.08.2025 11:21 1 articles · 1mo ago
Microsoft resolves Windows upgrade failures with 0x8007007F error
Microsoft resolved a known issue causing Windows upgrades to fail with 0x8007007F errors on some Windows 11 and Windows Server systems. The affected upgrade paths include Windows 10 1809, 21H2, and 22H2 to Windows 11 versions 23H2 and 22H2, and Windows Server 2016 to Windows Server 2019 or 2022, and Windows Server 2019 to Windows Server 2022. The issue was resolved as of August 15, 2025, and users are advised to retry the upgrade process if they encounter the error.
Show sources
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
-
19.08.2025 16:39 5 articles · 1mo ago
Microsoft August 2025 Patch Tuesday: Reset and Recovery Failures on Windows 10 and 11
Microsoft released KB5065426 and KB5065429 to address NDI streaming issues on Windows 10 and 11. The September 2025 Patch Tuesday security updates also address another known issue introduced by the August 2025 Windows security updates, which causes unexpected User Account Control (UAC) prompts and app installation problems for non-admin users. Microsoft also fixed another known issue causing security updates delivered via Windows Server Update Services (WSUS) to fail with 0x80240069 errors after installing KB5063878.
Show sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
13.08.2025 11:47 1 articles · 1mo ago
Microsoft August 2025 Patch Tuesday: BadSuccessor Kerberos EoP Vulnerability Fixed
The update includes a fix for CVE-2025-53779, a publicly known Windows Kerberos EoP flaw dubbed BadSuccessor, disclosed in May 2025. The flaw allows attackers with sufficient privileges to compromise an Active Directory domain by misusing delegated Managed Service Account (dMSA) objects. The vulnerability can be exploited to impersonate privileged accounts, escalate to domain administrator, and potentially gain full control of the Active Directory domain.
Show sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
13.08.2025 00:47 2 articles · 1mo ago
Microsoft August 2025 Patch Tuesday: 111 CVEs Addressed, Including 44 EoP Vulnerabilities
The update addresses 111 vulnerabilities, with 16 rated Critical, 92 rated Important, two rated Moderate, and one rated Low in severity. It includes fixes for 35 RCE vulnerabilities, 18 information disclosure flaws, 8 spoofing defects, and 4 denial-of-service issues. The update also addresses a publicly known Windows Kerberos EoP flaw dubbed BadSuccessor, disclosed in May 2025. Critical issues include EoP bugs in Windows Hyper-V, Microsoft SQL Server, and Azure OpenAI, as well as RCE vulnerabilities in SharePoint and Windows Graphics Component.
Show sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
Information Snippets
-
Microsoft's August 2025 Patch Tuesday addresses 111 CVEs, including 44 EoP vulnerabilities.
First reported: 13.08.2025 00:473 sources, 3 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The update includes fixes for 34 RCE vulnerabilities and 16 information disclosure flaws.
First reported: 13.08.2025 00:473 sources, 3 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Two critical vulnerabilities in Microsoft's AI technologies were patched: CVE-2025-53767 in Azure OpenAI and CVE-2025-53773 in GitHub Copilot and Visual Studio.
First reported: 13.08.2025 00:471 source, 1 articleShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
-
CVE-2025-53779, a publicly known Windows Kerberos EoP flaw dubbed BadSuccessor, was disclosed in May 2025 and is included in the update.
First reported: 13.08.2025 00:473 sources, 3 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
-
CVE-2025-53155 in Windows Hyper-V and four SQL Server vulnerabilities (CVE-2025-24999, CVE-2025-49759, CVE-2025-47954, CVE-2025-53727) are among the high-priority EoP bugs.
First reported: 13.08.2025 00:472 sources, 2 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
CVE-2025-49712 in SharePoint enables RCE and requires authentication, but can be chained with other flaws for full server compromise.
First reported: 13.08.2025 00:472 sources, 2 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
CVE-2025-50165 and CVE-2025-53766 are critical RCE vulnerabilities in the Windows Graphics Component and GDI+ graphics programming interface, respectively, with CVSS scores of 9.8.
First reported: 13.08.2025 00:472 sources, 2 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
CVE-2025-50165 is particularly risky as it can be exploited through malicious JPEG images embedded in various file types.
First reported: 13.08.2025 00:472 sources, 2 articlesShow sources
- Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday — www.darkreading.com — 13.08.2025 00:47
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
The August 2025 Patch Tuesday update addresses 111 vulnerabilities, with 16 rated Critical, 92 rated Important, two rated Moderate, and one rated Low in severity.
First reported: 13.08.2025 11:471 source, 1 articleShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
The update includes fixes for 35 RCE vulnerabilities, 18 information disclosure flaws, 8 spoofing defects, and 4 denial-of-service issues.
First reported: 13.08.2025 11:472 sources, 3 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
-
CVE-2025-53786 is a privilege escalation vulnerability in Microsoft Exchange Server hybrid deployments with a CVSS score of 8.0.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
CVE-2025-53779, a publicly known Windows Kerberos EoP flaw dubbed BadSuccessor, was disclosed in May 2025 and is included in the update.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
-
CVE-2025-53767 is a critical elevation of privilege vulnerability in Azure OpenAI with a CVSS score of 10.0.
First reported: 13.08.2025 11:471 source, 1 articleShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
CVE-2025-53792 is an elevation of privilege vulnerability in Azure Portal with a CVSS score of 9.1.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
CVE-2025-53787 is an information disclosure vulnerability in Microsoft 365 Copilot BizChat with a CVSS score of 8.2.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
CVE-2025-50177 is a remote code execution vulnerability in Microsoft Message Queuing (MSMQ) with a CVSS score of 8.1.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
CVE-2025-50176 is a remote code execution vulnerability in DirectX Graphics Kernel with a CVSS score of 7.8.
First reported: 13.08.2025 11:472 sources, 2 articlesShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
CVE-2025-50154 is an NTLM hash disclosure spoofing vulnerability that bypasses a similar bug patched in March 2025.
First reported: 13.08.2025 11:471 source, 1 articleShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
Check Point disclosed vulnerabilities in the Windows kernel that can result in system crashes and hard reboots.
First reported: 13.08.2025 11:471 source, 1 articleShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
The update includes fixes for 16 vulnerabilities in Microsoft's Chromium-based Edge browser, including two spoofing bugs affecting Edge for Android.
First reported: 13.08.2025 11:471 source, 1 articleShow sources
- Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws — thehackernews.com — 13.08.2025 11:47
-
Microsoft's August 2025 security updates are causing failures in reset and recovery operations on Windows 10 and older versions of Windows 11.
First reported: 19.08.2025 16:391 source, 6 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The issue affects the Reset my PC feature, Fix problems using Windows Update tool, and RemoteWipe CSP.
First reported: 19.08.2025 16:391 source, 5 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The affected platforms include Windows 11 23H2, Windows 11 22H2, Windows 10 22H2, Windows 10 Enterprise LTSC 2021, Windows 10 IoT Enterprise LTSC 2021, Windows 10 Enterprise LTSC 2019, and Windows 10 IoT Enterprise LTSC 2019.
First reported: 19.08.2025 16:391 source, 5 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
Microsoft is working on an out-of-band update to fix the issue.
First reported: 19.08.2025 16:391 source, 4 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
A previous bug causing Windows update failures was fixed via Known Issue Rollback (KIR).
First reported: 19.08.2025 16:391 source, 3 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Another bug causing 0x80240069 errors when delivered via WSUS was also resolved.
First reported: 19.08.2025 16:391 source, 2 articlesShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Microsoft previously addressed a similar issue in April for Windows 11 22H2/23H2 systems.
First reported: 19.08.2025 16:391 source, 1 articleShow sources
- Microsoft: August security updates break Windows recovery, reset — www.bleepingcomputer.com — 19.08.2025 16:39
-
Microsoft released emergency out-of-band updates on August 19, 2025, to fix the recovery and reset issues caused by the August 2025 Patch Tuesday updates.
First reported: 20.08.2025 09:461 source, 5 articlesShow sources
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
-
The emergency updates are available as optional updates via Windows Update and Windows Update for Business, or can be downloaded and installed manually from the Microsoft Update Catalog.
First reported: 20.08.2025 09:461 source, 4 articlesShow sources
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The emergency updates are cumulative and supersede all previous updates for affected versions.
First reported: 20.08.2025 09:461 source, 4 articlesShow sources
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The affected updates causing the recovery issues are KB5063875, KB5063709, and KB5063877.
First reported: 20.08.2025 09:461 source, 4 articlesShow sources
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The emergency updates released are KB5066189, KB5066188, and KB5066187.
First reported: 20.08.2025 09:461 source, 4 articlesShow sources
- Microsoft releases emergency updates to fix Windows recovery — www.bleepingcomputer.com — 20.08.2025 09:46
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Microsoft resolved a known issue causing Windows upgrades to fail with 0x8007007F errors on some Windows 11 and Windows Server systems.
First reported: 20.08.2025 11:211 source, 2 articlesShow sources
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The affected upgrade paths include Windows 10 1809, 21H2, and 22H2 to Windows 11 versions 23H2 and 22H2, and Windows Server 2016 to Windows Server 2019 or 2022, and Windows Server 2019 to Windows Server 2022.
First reported: 20.08.2025 11:211 source, 2 articlesShow sources
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The issue was resolved as of August 15, 2025, and users are advised to retry the upgrade process if they encounter the error.
First reported: 20.08.2025 11:211 source, 2 articlesShow sources
- Microsoft fixes Windows upgrades failing with 0x8007007F error — www.bleepingcomputer.com — 20.08.2025 11:21
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The August 2025 security updates are causing severe lag and stuttering issues with NDI streaming software on some Windows 10 and Windows 11 systems.
First reported: 22.08.2025 15:251 source, 2 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The streaming issues affect applications such as OBS (Open Broadcast Software) and NDI Tools, especially when 'Display Capture' is enabled on the source PC.
First reported: 22.08.2025 15:251 source, 2 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The problems are triggered by the KB5063878 and KB5063709 security updates on Windows 11 24H2 users and Windows 10 21H2/22H2 devices, respectively.
First reported: 22.08.2025 15:251 source, 4 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The NDI team confirmed the issue, stating that the buggy Windows updates cause NDI traffic to drop unexpectedly, affecting RUDP connections.
First reported: 22.08.2025 15:251 source, 3 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
A temporary workaround involves changing the NDI Receive Mode to use TCP or UDP instead of RUDP.
First reported: 22.08.2025 15:251 source, 4 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
Microsoft acknowledged other issues caused by the KB5063878 and KB5063709 security updates, including a known issue that caused updates delivered via WSUS to fail with 0x80240069 errors.
First reported: 22.08.2025 15:251 source, 4 articlesShow sources
- Microsoft: August Windows updates cause severe streaming issues — www.bleepingcomputer.com — 22.08.2025 15:25
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Microsoft says recent Windows updates cause app install issues — www.bleepingcomputer.com — 04.09.2025 14:57
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
Microsoft resolved a known issue causing false CertificateServicesClient (CertEnroll) error messages after installing the July 2025 preview and subsequent Windows 11 24H2 updates.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The bug was acknowledged by Microsoft two weeks prior to the article, and users were advised to ignore the error events.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The error is related to the 'Microsoft Pluton Cryptographic Provider' not being loaded and does not reflect an issue with any active Windows component.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The issue is caused by a feature that hasn't yet been fully integrated into the operating system because it's still under development.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Microsoft confirmed the bug has been resolved and a fix will be rolling out over the next four weeks.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The resolution is gradually rolling out for commercial devices managed by Microsoft and consumer devices with KB5064081, released on August 29, 2025.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
The rollout is expected to complete in approximately 4 weeks, and all subsequent security and non-security updates will include this resolution by default.
First reported: 29.08.2025 21:021 source, 2 articlesShow sources
- Microsoft fixes bug behind Windows certificate enrollment errors — www.bleepingcomputer.com — 29.08.2025 21:02
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
-
Microsoft released KB5064081, a preview cumulative update for Windows 11 24H2, which includes thirty-six new features or changes.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The KB5064081 update introduces a new method for displaying CPU usage in Task Manager, standardizing CPU reporting across the application.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update includes new Recall features and a redesigned Windows Hello interface.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update addresses an issue that prevented some system recovery features from working properly due to a temporary file sharing conflict.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update fixes an issue in Resilient File System (ReFS) where using backup apps with large files could sometimes exhaust system memory.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update resolves an issue with the Chinese (Simplified) Input Method Editor (IME) where some extended characters appear as empty boxes.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update addresses an issue that prevents typing on the touch keyboard when using the Microsoft Changjie, Microsoft Bopomofo, or Microsoft Japanese Input Method Editors (IMEs).
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update fixes an issue that slows application installation on ARM64 devices.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update includes fixes for audio and video performance issues when using Network Device Interface (NDI) to stream or transfer feeds between PCs.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The update is part of the company's optional non-security preview update schedule, which releases updates at the end of each month to test new fixes and features coming to the next month's Patch Tuesday.
First reported: 29.08.2025 21:571 source, 2 articlesShow sources
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager — www.bleepingcomputer.com — 29.08.2025 21:57
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
-
The KB5065426 and KB5065431 cumulative updates for Windows 11 introduce new features and improvements, including a redesigned Windows Hello interface and enhanced passkey features.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates include a new Recall feature that opens to a personalized homepage, highlighting recent activity and top-used apps and websites.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates fix issues with the taskbar preview thumbnail, Search on the taskbar, and the lock screen widgets.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates introduce a new navigation bar for quick access to Home, Timeline, Feedback, and Settings in the Recall feature.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates include a new grid view in Search on the taskbar to help users quickly identify desired images.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates provide clearer status information in Search on the taskbar, including progress notices and file availability status.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates introduce a new visual experience for the Discover feed on the Widgets Board, including Copilot-curated stories.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates include a new Windows Backup for Organizations feature, providing enterprise-grade backup and restore capabilities.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates address an issue with the Microsoft Pluton Cryptographic Provider, resolving error messages in Windows Event Viewer.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The updates fix issues with live captions, input methods, and various underlying system components.
First reported: 09.09.2025 20:371 source, 2 articlesShow sources
- Windows 11 KB5065426 & KB5065431 cumulative updates released — www.bleepingcomputer.com — 09.09.2025 20:37
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The August 2025 security updates caused unexpected UAC prompts and app installation issues for non-admin users across all Windows versions.
First reported: 10.09.2025 15:021 source, 2 articlesShow sources
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The issue was triggered by a security patch for CVE-2025-50173, a Windows Installer privilege escalation vulnerability.
First reported: 10.09.2025 15:021 source, 2 articlesShow sources
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The September 2025 Windows security update reduces the scope of UAC prompts for MSI repairs and allows IT admins to disable UAC prompts for specific apps.
First reported: 10.09.2025 15:021 source, 2 articlesShow sources
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The affected platforms include Windows 11 versions 24H2, 23H2, and 22H2; Windows 10 versions 22H2, 21H2, 1809, and Enterprise LTSC 2019, 2016, and 2015 LTSB; and Windows Server 2025, 2022, 2019, 2016, 2012 R2, and 2012.
First reported: 10.09.2025 15:021 source, 2 articlesShow sources
- Microsoft fixes app install issues caused by August Windows updates — www.bleepingcomputer.com — 10.09.2025 15:02
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
Microsoft released KB5065426 and KB5065429 to address NDI streaming issues on Windows 10 and 11.
First reported: 10.09.2025 16:021 source, 1 articleShow sources
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The September 2025 Patch Tuesday security updates fix unexpected UAC prompts and app installation problems for non-admin users.
First reported: 10.09.2025 16:021 source, 1 articleShow sources
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The September 2025 Patch Tuesday security updates address issues caused by the August 2025 updates.
First reported: 10.09.2025 16:021 source, 1 articleShow sources
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
-
The September 2025 Patch Tuesday security updates fix a known issue causing security updates delivered via WSUS to fail with 0x80240069 errors.
First reported: 10.09.2025 16:021 source, 1 articleShow sources
- Microsoft fixes streaming issues triggered by Windows updates — www.bleepingcomputer.com — 10.09.2025 16:02
Similar Happenings
Command injection flaw in Libraesva ESG exploited by state actors
Libraesva has released an emergency update for its Email Security Gateway (ESG) solution to address a command injection vulnerability (CVE-2025-59689). This flaw, exploited by a state-sponsored actor, allows arbitrary shell command execution via a crafted email attachment. The vulnerability affects all versions from 4.5 onwards and has been patched in versions 5.0.31, 5.1.20, 5.2.31, 5.3.16, 5.4.8, and 5.5.7. The exploit was discovered and patched within 17 hours of detection. The vulnerability is triggered by improper sanitization of compressed archive formats, enabling non-privileged users to execute arbitrary commands. The patch includes a sanitization fix, automated scans for indicators of compromise, and a self-assessment module to verify the update's application. The vulnerability has a CVSS score of 6.1, indicating medium severity. Libraesva has identified one confirmed incident of abuse by a foreign hostile state entity. Customers using versions below 5.0 must upgrade manually to a supported release, as they have reached end-of-life and will not receive a patch for CVE-2025-59689.
Microsoft Lifts Multiple Windows 11 24H2 Safeguard Holds
Microsoft has lifted multiple compatibility holds that previously prevented Windows 11 24H2 upgrades on devices with specific hardware and software configurations. The latest hold removed was for devices with integrated cameras due to a face detection bug causing app freezes. This bug was fixed, and the update block was lifted on September 22, 2025. Additionally, a safeguard hold for devices with Dirac audio software was removed on September 11, 2025, allowing eligible devices to upgrade to Windows 11 24H2. The issues affected systems with Dirac audio improvement software, leading to problems with audio device detection and integrated speakers. The incompatibility was traced to the cridspapo.dll component of the audio processing software. Affected users reported that Bluetooth headsets, speakers, and integrated speakers stopped functioning after the upgrade. A new driver addressing the issue is available via Windows Update.
Windows September 2025 updates cause SMBv1 share connection issues
Microsoft's September 2025 Windows security updates have introduced a known issue affecting connections to Server Message Block (SMB) v1 shares over the NetBIOS over TCP/IP (NetBT) protocol. This issue impacts various Windows client and server platforms, including Windows 11, Windows 10, Windows Server 2025, and Windows Server 2022. Users may fail to connect to shared files and folders using SMBv1 after installing these updates. Microsoft is actively working on a resolution and has provided a temporary workaround to mitigate the problem. The issue arises because either the SMB client or the SMB server has the September 2025 security update installed.
Microsoft September 2025 Patch Tuesday addresses 81 vulnerabilities, including two zero-days
Microsoft's September 2025 Patch Tuesday addresses 80 vulnerabilities, including one publicly disclosed flaw and eight critical vulnerabilities. The updates fix a range of issues, including privilege escalation, remote code execution, information disclosure, and denial-of-service vulnerabilities. The patches also cover a critical flaw in Azure Networking and address a new lateral movement technique dubbed BitLockMove. Additionally, security updates have been released by multiple vendors, including Adobe, Cisco, Google, and others. The September 2025 update includes 38 elevation of privilege (EoP) vulnerabilities. The two zero-day vulnerabilities are CVE-2025-55234 in Windows SMB Server and CVE-2024-21907 in Microsoft SQL Server. The SMB vulnerability is exploited through relay attacks, while the SQL Server flaw involves improper handling of exceptional conditions in Newtonsoft.Json. The updates also include hardening features for SMB Server to mitigate relay attacks, with recommendations for administrators to enable auditing to assess compatibility issues. The KB5065429 cumulative update for Windows 10 22H2 and 21H2 includes fourteen fixes or changes, addressing unexpected UAC prompts and severe lag and stuttering issues with NDI streaming software. The update enables auditing SMB client compatibility for SMB Server signing and SMB Server EPA, and includes an opt-in feature for administrators to allow outbound network traffic from Windows 10 devices. The September 2025 update includes 38 elevation of privilege (EoP) vulnerabilities. CVE-2025-55234 is an elevation of privilege vulnerability with a CVSS score of 8.8. CVE-2025-54918 in Windows NT LAN Manager (NTLM) is marked as critical and has a CVSS score of 8.8. CVE-2025-54111 and CVE-2025-54913 are EoP vulnerabilities in Windows UI XAML. CVE-2025-55232 in the Microsoft High Performance Compute (HPC) Pack has a CVSS score of 9.8. CVE-2025-54916 in Windows NTFS has a CVSS score of 7.8 and can be exploited through SMB or local parsing routines. Microsoft has released the final non-security preview update for Windows 10, version 22H2, which includes fixes for the out-of-box experience and SMBv1 protocol connectivity. The update improves the servicing stack, updating Windows 10 22H2 systems to build 19045.6396. The update includes fixes and quality improvements from the KB5065429 cumulative update, enabling support for IT administrators to deploy hardening measures for SMB. The update addresses an issue causing non-admin users to receive unexpected User Account Control (UAC) prompts and fixes delays or uneven audio and video performance issues with Network Device Interface (NDI) streaming. Microsoft will stop providing security updates for Windows 10 after October 14, 2025, and the Extended Security Updates (ESU) program is available for Windows 10 users to delay the switch to Windows 11. Individual customers in the European Economic Area (EEA) can enroll in the ESU program for free.
Microsoft Anti-Spam Service Misidentifies Safe URLs in Exchange Online and Teams
Microsoft is addressing a bug in its anti-spam service that incorrectly blocks URLs in Exchange Online and Microsoft Teams, causing some emails to be quarantined. The issue began on September 5, 2025, affecting users who received false alerts about malicious URLs. Over 6,000 URLs have been identified as affected, and Microsoft is working to unblock them and recover any incorrectly flagged messages. The bug is due to the anti-spam engine mistakenly tagging URLs within other URLs as potentially malicious. Microsoft has deployed a partial fix and is continuing to address the impact. The incident has been classified as an event with noticeable user impact, although the exact number of affected customers and regions remains undisclosed. Similar issues have occurred throughout the year, including a May 2025 incident where a machine learning model incorrectly flagged Gmail emails as spam in Exchange Online.