Patch Tuesday: Here are the Windows 10 news

It’s Patch Tuesday, and Microsoft has released a series of cumulative updates for supported versions of Windows 10.

Windows 10 20H2 and 2004

If you are on Windows 10 20H2 and 2004, Microsoft is releasing KB5000802 taking the operating system to build 19042,867 and 19041,867, respectively.

The update has the following highlights:

  • Updates to improve security when Windows performs basic operations.
  • Updates to improve security when using Microsoft Office products.
  • Updates the security of the Windows user interface.

Fixes and improvements:

This security update includes quality improvements. The main changes include:

  • Addresses an elevation of privilege security vulnerability documented in CVE-2021-1640 related to print jobs sent to “FILE:” ports. After installing Windows updates for March 9, 2021 and later, print jobs that are in a pending state before restarting the print spooler service or restarting the operating system will remain in an error state. Manually delete the affected print jobs and resend them to the print queue when the print spooler service is online.
  • Security updates for Windows Shell, Windows Fundamentals, Windows Management, Windows Apps, Windows User Account Control (UAC), Windows Virtualization, Windows Kernel, Microsoft Graphics Component, Internet Explorer, Microsoft Edge Legacy and Windows Media.

Known issues in this update:

Symptom Work around

System and user certificates may be lost when upgrading a device from Windows 10, version 1809 or later to a later version of Windows 10. Devices will only be affected if they have already installed any latest cumulative update (LCU) released in 16 September 2020 or later and proceed with upgrading to a later version of Windows 10 from the media or from an installation source that does not have an LCU released on October 13, 2020 or later integrated. This is especially true when managed devices are updated using outdated packages or media through an update management tool, such as Windows Server Update Services (WSUS) or Microsoft Endpoint Configuration Manager. This can also happen when using outdated physical media or ISO images that do not have the latest updates integrated.

Observation Devices that use Windows Update for Business or connect directly to Windows Update are not affected. Any device connected to Windows Update must always receive the latest versions of the feature update, including the latest LCU, without any extra steps.

If you have already encountered this problem on your device, you can mitigate it in the uninstallation window by going back to the previous version of Windows using the instructions here. The uninstallation window can be 10 or 30 days, depending on the configuration of your environment and the version you are upgrading to. Next, you will need to upgrade to the latest version of Windows 10 after the issue is resolved in your environment. Observation In the uninstallation window, you can increase the number of days required to return to the previous version of Windows 10 using the DISM / Set-OSUninstallWindow command. You must make this change before the standard uninstall window has expired. For more information, see DISM operating system uninstall command line options.

We are working on a resolution and will provide updated packages and renewed media in the coming weeks.

When using Microsoft’s Japanese Input Method Editor (IME) to insert Kanji characters in an application that automatically allows you to enter Furigana characters, you may not get the correct Furigana characters. It may be necessary to enter the Furigana characters manually.

Observation Affected applications are using the ImmGetCompositionString () occupation.

We are working on a resolution and will provide an update on an upcoming release.

You can install the update by checking for updates in Settings or by downloading it from the Microsoft Update Catalog website.

Windows 10 1909

If you are on Windows 10 1909, Microsoft is releasing KB5000808 taking the operating system to build 18363.1440.

The update has the following highlights:

  • Updates the security of the Windows user interface.
  • Updates to improve security when Windows performs basic operations.
  • Updates to improve security when using Microsoft Office products.

Fixes and improvements:

This security update includes quality improvements. The main changes include:

  • Addresses an elevation of privilege security vulnerability documented in CVE-2021-1640 related to print jobs sent to “FILE:” ports. After installing Windows updates for March 9, 2021 and later, print jobs that are in a pending state before restarting the print spooler service or restarting the operating system will remain in an error state. Manually delete the affected print jobs and resend them to the print queue when the print spooler service is online.
  • Security updates for Windows Shell, Windows Fundamentals, Windows Management, Windows Apps, Windows User Account Control (UAC), Windows Core Network, Windows Hybrid Cloud Network, Windows Virtualization, Windows Kernel, Microsoft Graphics Component, Internet Explorer, Microsoft Edge Legacy and Windows Media.

Known issues in this update:

Symptom

Work around
System and user certificates may be lost when upgrading a device from Windows 10, version 1809 or later to a later version of Windows 10. Devices will only be affected if they have already installed any latest cumulative update (LCU) released in 16 September 2020 or later and proceed with upgrading to a later version of Windows 10 from the media or from an installation source that does not have an LCU released on October 13, 2020 or later integrated. This is especially true when managed devices are updated using outdated packages or media through an update management tool, such as Windows Server Update Services (WSUS) or Microsoft Endpoint Configuration Manager. This can also happen when using outdated physical media or ISO images that do not have the latest updates integrated.

Observation Devices that use Windows Update for Business or connect directly to Windows Update are not affected. Any device connected to Windows Update must always receive the latest versions of the feature update, including the latest LCU, without any extra steps.

If you have already encountered this problem on your device, you can mitigate it in the uninstallation window by going back to the previous version of Windows using the instructions here. The uninstallation window can be 10 or 30 days, depending on the configuration of your environment and the version you are upgrading to. Next, you will need to upgrade to the latest version of Windows 10 after the issue is resolved in your environment. Observation In the uninstallation window, you can increase the number of days required to return to the previous version of Windows 10 using the DISM / Set-OSUninstallWindow command. You must make this change before the standard uninstall window has expired. For more information, see DISM operating system uninstall command line options.

We are working on a resolution and will provide updated packages and media in the coming weeks.

You can install the update by checking for updates in Settings or by downloading it from the Microsoft Update Catalog website.

Source