Microsoft closes book on rogue Windows Server 2025 upgrades
Briefly

Microsoft closes book on rogue Windows Server 2025 upgrades
"The Windows Server 2025 feature update was released as an Optional update under the Upgrade Classification: 'DeploymentAction=OptionalInstallation'. Feature update metadata must be interpreted as Optional and not Recommended by patch management tools."
"After installing this update, non‑Global Catalog (non‑GC) domain controllers (DCs) in environments that use Privileged Access Management (PAM) might experience LSASS crashes during startup."
"As a result, affected DCs might restart repeatedly, preventing authentication and directory services from functioning, and potentially rendering the domain unavailable."
Microsoft has marked the unexpected upgrade of Windows Servers to Windows Server 2025 as resolved after over a year. The upgrade, which occurred without user consent, was attributed to third-party update management tools. However, many servers without such tools also experienced the upgrade. The resolution came with cumulative update KB5082063, which introduced new issues, including LSASS crashes in non-Global Catalog domain controllers, leading to repeated reboots and potential service disruptions. Microsoft has promised a fix for these new problems soon.
Read at Theregister
Unable to calculate read time
[
|
]