As the summer of 2024 heats up, Microsoft has rolled out its important security updates for all supported versions of Windows, ensuring that users and administrators can maintain a secure operating environment. This August update particularly addresses a significant issue with BitLocker recovery, which has been a point of concern for many users.
Overview of August 2024 Security Updates
On August 13, 2024, Microsoft officially released a suite of security updates aimed at enhancing security across numerous Windows operating systems. This goes beyond just fixing bugs; it responds to specific vulnerabilities that could potentially be exploited by cybercriminals. The updates include patches for vulnerabilities across Windows client versions, Windows Server versions, and other Microsoft products like Office.Key Highlights
- Total Updates: Microsoft released a total of 90 security updates, alongside 12 security fixes for non-Microsoft products, including Chromium.
- Critical Vulnerabilities: Various versions of Windows are impacted, with critical vulnerabilities identified in both client and server environments.
- BitLocker Recovery Issues: A notable fix addresses the BitLocker recovery screen problem, which has been a persistent issue for users attempting to connect to Wi-Fi using their Microsoft accounts.
Specific Changes Implemented
- Windows 10 (Multiple Versions):
- Version 22H2: This version was reported to have 54 vulnerabilities, which include 4 critical, 49 important, and 1 moderate. Vulnerabilities addressed include:
- CVE-2022-3775 and CVE-2023-40547, which relate to various exploitations in the reliable multicast transport driver and TCP/IP stack.
- Windows 10 (Multiple Versions):
- Windows 11 (Various Versions):
- Version 22H2: Similar to version 22H2 of Windows 10, this one has 55 vulnerabilities with the same critical attributes.
- Versions 23H2 and 24H2: Marked by slight variations in the number of vulnerabilities, they also carry identical criticality levels, ensuring that all users remain protected against potential threats.
- Windows Server Products:
- The updates cover various server OS, including Windows Server 2008, 2012, 2019, and 2022, each with their own sets of vulnerabilities categorized similarly in terms of critical, important, and moderate severity.
Improvements Introduced in Updates
- The updates for Windows 10 and 11 versions include the incorporation of the SBAT (Secure Boot Application Table) feature, preventing the execution of malicious code from vulnerable EFI bootloaders.
- Drag-and-drop features in the taskbar are now enhanced, allowing for easier manipulation of pinned applications.
- The ability to connect to Wi-Fi from the lock screen using the Microsoft account has been reinstated, resolving a previous availability issue.
Important Reminders for Users
Microsoft emphasizes the importance of backing up systems prior to installation of updates. As universal security patches can lead to varying degrees of impact depending on the system configuration, a backup ensures that users can recover effortlessly should issues arise post-installation. They recommend solutions like Paragon Backup or similar robust backup software.How to Install the Updates
Downloading the updates can be done either automatically or manually: - Automatic Installation: For most home users, updates are installed automatically through the Windows Update feature. Administrators can force installations by navigating to Settings > Update & Security > Windows Update, then selecting "Check for updates."
- The updates cover various server OS, including Windows Server 2008, 2012, 2019, and 2022, each with their own sets of vulnerabilities categorized similarly in terms of critical, important, and moderate severity.
- Manual Download: Users who prefer to have direct control can manually download the updates from the Microsoft Update Catalog.
Known Issues
Among the known issues, the updates highlight potential account changes that may not work correctly immediately after applying the updates. Specifically, changes in profile pictures might not be possible on updated systems, with Microsoft working to identify workarounds.Conclusion
August’s security updates are an essential part of maintaining the integrity and security of Microsoft’s operating systems. With the fixes for crucial vulnerabilities and improvements across various Windows versions, users can expect a more secure work environment. Keeping systems updated not only eliminates existing threats but also fortifies defenses against future challenges. For users, staying informed about these updates is vital to ensure smooth operation, especially in the face of evolving cyber threats. Always make sure to check the official Microsoft support sites for detailed descriptions of updates and potential issues.Source
This article is based on the report from gHacks Technology News .