Microsoft Windows 11 localhost HTTP/2 breakage
Service Disruption
Summary
Hide ▲
Show ▼
The October Windows 11 updates broke localhost HTTP/2 connections, preventing local services from completing requests and disrupting debugging and authentication workflows. The issue affects Windows 11 systems that installed KB5066835 and also KB5065789 preview builds. Reported fallout includes Visual Studio debugging, SSMS Entra ID authentication, and Duo Desktop. The main workaround described is to uninstall the updates and restart Windows.
Related Happenings
Microsoft Windows Server 2016 domain controller discovery failure after KB5087537
Service Disruption
First: 26.05.2026 10:41
Last: 26.05.2026 10:41
Sources 1
About this happening:
Microsoft confirmed a **known issue** in **Windows Server 2016** after **KB5087537** that can prevent **domain controller discovery**, disrupting administrative operations and app...
Microsoft Windows Server 2016 domain controller discovery failure after KB5087537
Service DisruptionAbout this happening: Microsoft confirmed a **known issue** in **Windows Server 2016** after **KB5087537** that can prevent **domain controller discovery**, disrupting administrative operations and app...
Windows cldflt.sys MiniPlasma privilege escalation zero-day privilege-escalation flaw
Vulnerability
First: 18.05.2026 07:59
Last: 18.05.2026 07:59
Sources 1
About this happening:
**MiniPlasma** is a **Windows privilege-escalation zero-day** in **cldflt.sys** that can give attackers **SYSTEM** privileges on **fully patched Windows systems**. The flaw affect...
Windows cldflt.sys MiniPlasma privilege escalation zero-day privilege-escalation flaw
VulnerabilityAbout this happening: **MiniPlasma** is a **Windows privilege-escalation zero-day** in **cldflt.sys** that can give attackers **SYSTEM** privileges on **fully patched Windows systems**. The flaw affect...
Windows cldflt.sys privilege escalation (CVE-2020-17103)
Vulnerability
First: 18.05.2026 01:30
Last: 18.05.2026 01:30
Sources 1
About this happening:
A public **MiniPlasma** proof-of-concept has renewed concern around the **Windows cldflt.sys Cloud Filter driver** because it can elevate a **standard user** to **SYSTEM** on **fu...
Windows cldflt.sys privilege escalation (CVE-2020-17103)
VulnerabilityAbout this happening: A public **MiniPlasma** proof-of-concept has renewed concern around the **Windows cldflt.sys Cloud Filter driver** because it can elevate a **standard user** to **SYSTEM** on **fu...
Microsoft Windows Autopatch fix for EU restricted driver update deployment bug
Security Tool/Service
First: 13.05.2026 17:36
Last: 13.05.2026 17:36
Sources 1
About this happening:
**Microsoft** fixed a **Windows Autopatch** service bug that let **restricted driver updates** reach some managed devices in the **EU**, bypassing admin approval controls and crea...
Microsoft Windows Autopatch fix for EU restricted driver update deployment bug
Security Tool/ServiceAbout this happening: **Microsoft** fixed a **Windows Autopatch** service bug that let **restricted driver updates** reach some managed devices in the **EU**, bypassing admin approval controls and crea...
Windows DNS heap-based buffer overflow remote code execution flaw (CVE-2026-41096)
Vulnerability
First: 13.05.2026 13:36
Last: 13.05.2026 13:36
Sources 1
About this happening:
Microsoft patched **CVE-2026-41096**, a **heap-based buffer overflow** in **Windows DNS** that could let an unauthorized attacker execute code remotely on vulnerable Windows syste...
Windows DNS heap-based buffer overflow remote code execution flaw (CVE-2026-41096)
VulnerabilityAbout this happening: Microsoft patched **CVE-2026-41096**, a **heap-based buffer overflow** in **Windows DNS** that could let an unauthorized attacker execute code remotely on vulnerable Windows syste...
Timeline
-
17.10.2025 01:25 2 articles · 7mo ago
Windows 11 update breakage disrupts localhost HTTP/2 connections
Initial DisclosureMicrosoft's October Windows 11 update set is reported to have broken localhost HTTP/2 connectivity on systems that installed KB5066835 and the September KB5065789 preview update, causing requests to 127.0.0.1 to fail with ERR_CONNECTION_RESET or ERR_HTTP2_PROTOCOL_ERROR and disrupting Visual Studio debugging, SSMS Entra ID authentication, and Duo Desktop; suggested workarounds include registry changes, a Microsoft Defender intelligence update, or uninstalling KB5066835 and KB5065789 and restarting Windows.
Show sources
- Windows 11 updates break localhost (127.0.0.1) HTTP/2 connections — www.bleepingcomputer.com — 17.10.2025 01:25
- Windows 11 updates break localhost (127.0.0.1) HTTP/2 connections — www.bleepingcomputer.com — 17.10.2025 01:25