Microsoft has released the penultimate update for Windows 10 1909. KB 5001337 is a cumulative security update and increases the version number to 18363.1500
The last security update for Windows 10 1909 will be available next month. The support for Windows 10 1803, Windows 10 1809 Enterprise and Education (except LTSC), which has been extended by Corona, will then be removed from support.
In this update, of course, KB5000850 is also integrated as a non-security-relevant update from March 26th, which removed the old Edge and fixed other problems.
Known issues with KB5001337
- System and user certificates may be lost when upgrading a device from Windows 10, version 1809 or later to a later version of Windows 10. Devices are only affected if they have already installed a Latest Cumulative Update (LCU) released on September 16, 2020, or later and then proceed with the update to a later version of Windows 10 from media or an installation source that does not contain an LCU released on October 13, 2020, or later. Workaround: go back to the previous version.
Problems fixed by KB5001337
- Addresses an issue with security vulnerabilities identified by a security researcher. Due to these security vulnerabilities, this and all future Windows updates will no longer contain the RemoteFX vGPU function. For more information about the vulnerability and how to resolve it, see CVE-2020-1036 and KB4570006. Secure vGPU alternatives are available via Discrete Device Assignment (DDA) in Windows Server LTSC versions (Windows Server 2016 and Windows Server 2019) and Windows Server SAC versions (Windows Server, version 1803 and later versions).
- Addresses a potential elevation of privilege in the way Azure Active Directory web login allows arbitrary browsing from the third-party endpoints used for federated authentication. For more information, see CVE-2021-27092 and Policy CSP - Authentication.
- Security updates to Windows App Platform and Frameworks, Windows Apps, Windows Input and Composition, Windows Office Media, Windows Fundamentals, Windows Cryptography, Windows AI Platform, Windows Hybrid Cloud Networking, Windows Kernel, Windows Virtualization, and Windows Media.
- You can find the individual list of CVE vulnerabilities on this page msrc.microsoft.com/update-guide/
- support.microsoft
Manual download of KB5001406 as SSU
- Info KB5001406
- windows10.0-kb5001406-x64.msu
- windows10.0-kb5001406-x86.msu
- ARM: windows10.0-kb5001406-arm64.msu
0 Comments