In a recent update, Microsoft has rolled out KB5041571 for users of Windows 11 24H2 equipped with Copilot+ PCs, elevating their systems to Build 26100.1457. This update comes alongside the regular Patch Tuesday updates for Windows 11 versions 23H2, 22H2, and 21H2, ensuring that users benefit from the latest enhancements and security measures.
Highlights
This update addresses security issues for your Windows operating system.
Improvements
The security update incorporates improvements from update KB5040529, which was released on July 23, 2024. Below is a summary of the key issues addressed by this update, along with any new features introduced:
- Lock screen: This update resolves CVE-2024-38143, leading to the removal of the “Use my Windows user account” checkbox on the lock screen for Wi-Fi connections.
- NetJoinLegacyAccountReuse: The update eliminates this registry key. For further details, refer to KB5020276 regarding Netjoin: Domain join hardening changes.
- Secure Boot Advanced Targeting (SBAT) and Linux Extensible Firmware Interface (EFI): This update applies SBAT to Windows-running systems, preventing vulnerable Linux EFI (Shim bootloaders) from executing. Note that this SBAT update will not affect systems that dual-boot Windows and Linux. Users may encounter issues with older Linux ISO images post-update; in such cases, it is advisable to consult your Linux vendor for updated ISO images.
- Domain Name System (DNS): This update enhances DNS server security to address CVE-2024-37968. Users may experience a SERVFAIL error or timeout if their domain configurations are outdated.
Windows 11 Servicing Stack Update (KB5041575) - 26100.1440
This update focuses on quality improvements to the servicing stack, the component responsible for installing Windows updates. Servicing stack updates (SSU) are crucial for maintaining a robust and reliable servicing stack, ensuring that devices can effectively receive and install Microsoft updates.
Known Issues in This Update
Applies to | Symptom | Workaround |
---|---|---|
All users | We’re aware of an issue where players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows. | Players on Arm devices can access Roblox by downloading the title directly from www.Roblox.com. |
For those looking to install this update on an offline machine, it is available for download from the Microsoft Catalog. Alternatively, users with an internet connection can easily access it through Windows Update.