[German]Various security updates for Windows Server 2008 R2 (in the 4th ESU year) and for Windows Server 2012/R2 (1st ESU year) were released on November 14, 2023 (the updates can also be installed under Windows 7 SP1). Here is an overview of these updates for Windows Server 2008 R2 and Windows Server 2012/R2 as well as Windows 7 SP1.
Advertising
Remarks on the update installation
Please note the information on the installation sequence for Windows Server that Microsoft provides in the KB articles. Windows 7 and 8.1 will no longer be supported since January 2020 / January 2023, but Windows 7 systems can be provided with security updates. Please see my notes on Windows 7 ESU and BypassESU v12 in the blog post Microsoft Security Update Summary (February 14, 2023). Windows Server 2012/R2 will no longer be supported in October 2023 and will only receive updates with an ESU license.
Updates for Windows Server 2012 R2
A rollup update (for systems with an ESU license) have been released for Windows Server 2012 /R2. The update history for Windows 8.1 and Windows Server 2012 R2 can be found on this Microsoft page.
KB5032249 (Monthly Rollup) for Windows Server 2012 R2
Update KB5032249 (Monthly Rollup for Windows 8.1 and Windows Server 2012 R2) contains improvements and fixes, and eliminates various vulnerabilities that are not specified. However, the following fixes are listed:
This update includes daylight saving time (DST) changes for Syria. For more information, see Syria 2022 time zone update now available.
This update is automatically downloaded and installed by Windows Update in Windows Server 2012 R2, but is also available in the Microsoft Update Catalog and via WSUS. Details on fixes and any known problems in connection with the update are listed in the support article.
There is no security-only update for Windows Server 2012 R2.
Updates for Windows Server 2012
A rollup update for Windows Server 2012 and Windows Embedded 8 Standard has been released for systems with an ESU license. The update history for Windows 8.1 and Windows Server 2012 R2 can be found on this Microsoft page.
KB5032247 (Monthly Rollup) for Windows Server 2012
Update KB5031442 (Monthly Rollup for Windows Server 2012, Windows Embedded 8 Standard) contains improvements and fixes as well as security patches. This update is available in the Microsoft Update Catalog and via WSUS. For a manual installation, the latest Servicing Stack Update (SSU) must be installed beforehand – although this SSU can no longer be uninstalled. Problems in connection with the update are listed in the KB article.
Advertising
There is no security-only update for Windows Server 2012.
Updates for Windows Server 2008 R2 (and Windows 7)
A rollup and a security-only update have been released for Windows Server 2008 R2 SP1 with ESU (should be able to be installed on 64-bit Windows 7 SP1 with tricks). However, these updates are only available for systems with an ESU license (1st, 2nd, 3rd and 4th year complete). The update history for Windows 7 can be found on this Microsoft page.
The update installation requires either a valid ESU license for 2023, or ESU Bypass v12 (see the comments above). In addition, security updates for Windows Embedded POSReady 7 until 2024 are provided, which can be installed under Windows 7. Furthermore, ACROS Security offers micropatches for protection until 2025 (see 0patch secures Microsoft Edge for Windows 7/Server 2008/2012/R2 until Jan. 2025).
KB5032252 (Monthly Rollup) for Windows 7/Windows Server 2008 R2
Update KB5032252 (Monthly Quality Rollup for Windows 7 SP1 and Windows Server 2008 R2 SP1) contains (in addition to the security fixes from the previous month) improvements and bug fixes. This update is automatically downloaded and installed via Windows Update. However, the package is also available via Microsoft Update Catalog and is distributed via WSUS. Details on the requirements and known issues can be found in the KB article.
KB5032250 (Security Only) for Windows 7/Windows Server 2008 R2
Update KB5032250 (Security-only update) is available for Windows 7 SP1 and Windows Server 2008 R2 SP1 with ESU license. The update addresses the same points as the updates for Windows Server 2012 R2. The update is available via WSUS or in the Microsoft Update Catalog. To install the update, the prerequisites listed in the KB article and above in the rollup update must be fulfilled. The update contains the known errors described in the KB article. Make sure to install the latest Servicing Stack Update beforehand.
Similar articles:
Microsoft Security Update Summary (November 14, 2023)
Patchday: Windows 10-Updates (November 14, 2023)
Patchday: Windows 11/Server 2022-Updates (November 14, 2023)
Windows 7/Server 2008 R2; Server 2012 R2: Updates (November 14, 2023)
Microsoft Office Updates (November 14, 2023)
Exchange Server security updates (November 14, 2023)
Windows: cURL 8.4.0 update coming on November 14, 2023 patch day
Advertising
Hello, there aren't a security only update for Windows Server 2012/R2 for November 2023 ? Is it a mistake or a change from Microsoft with the end support of these two OS version ? Or there isn't security issue who need security only update ?
I don't know – all I recognized is, that they don't post an entry for security only updates. Maybe they ship it later or just ship rollup updates. We have to wait and see.
Starting in November 2023 the ESU program will only include Monthly Rollup packages for Windows Server 2012/R2 from now on.
https://techcommunity.microsoft.com/t5/windows-server-news-and-best/windows-server-end-of-support-key-dates/ba-p/3074148
Hello, thanks Mastervoldt for this note that have not repeat since this article. The Microsoft communication is very bad.