Microsoft just released the patch that it almost released on Tuesday. It’s the SMBv3 patch that’s set the security community on fire. KB 4551762, whic
[See the full post at: Heads up: Microsoft posts a fix for that SMBv3 security hole. Get ready to install this month’s Windows patches.]
![]() |
There are isolated problems with current patches, but they are well-known and documented on this site. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Heads up: Microsoft posts a fix for that SMBv3 security hole. Get ready to install this month’s Windows patches.
Home » Forums » Newsletter and Homepage topics » Heads up: Microsoft posts a fix for that SMBv3 security hole. Get ready to install this month’s Windows patches.
- This topic has 33 replies, 21 voices, and was last updated 3 years, 6 months ago.
AuthorTopicwoody
ManagerViewing 11 reply threadsAuthorReplies-
bbearren
AskWoody MVPMS-DEFCON ignored per usual, KB4551762 Cumulative Update for Windows 10 Version 1909 for x64-based Systems installed, system nominal.
Always create a fresh drive image before making system changes/Windows updates; you may need to start over!We were all once "Average Users". We all have our own reasons for doing the things that we do with our systems, we don't need anyone's approval, and we don't all have to do the same things. -
Elly
AskWoody MVPAs someone who had many family and friends have W10 meltdowns (probably due to having inexpensive, slower machines) I’ve always appreciated those who have the knowledge and expertise to easily recover. For the DEFCON system to work, there have to be those adventurous enough to put their machines on the line. Your regular reporting of having no issues is appreciated.
Non-techy Win 10 Pro and Linux Mint experimenter
-
geekdom
AskWoody_MVPWindows 1909 Test Beta
March 12, 2020kb4551762
https://support.microsoft.com/en-us/help/4551762/windows-10-update-kb4551762Installed update from Windows Update and then rebooted without error.
On permanent hiatus {with backup and coffee}
offline▸ Win10Pro 2004.19041.572 x64 i3-3220 RAM8GB HDD Firefox83.0b3 WindowsDefender
offline▸ Acer TravelMate P215-52 RAM8GB Win11Pro 22H2.22621.1265 x64 i5-10210U SSD Firefox106.0 MicrosoftDefender
online▸ Win11Pro 22H2.22621.1992 x64 i5-9400 RAM16GB HDD Firefox116.0b3 MicrosoftDefender1 user thanked author for this post.
-
Terry Muench
AskWoody LoungerWell, Microsoft has done it again — force fed me KB4551762 (CVE-2020-0796) re: the SMBv3 security hole. Last night I left my PC asleep; this morning I came in to find my PC “ON” and updated without my permission. I am now at 18362.720. I am using StopUpdates10 to Pause updates. This has never happened since I’ve been using StopUpdates10 (a great tool by the way).
I realize KB4551762 is a critical update but @askWoody has said there are no known exploits. I don’t appreciate Microsoft again ignoring its own rules and NOT honoring my wishes to pause Updates.
-
jabeattyauditor
AskWoody LoungerWell, Microsoft has done it again — force fed me KB4551762 (CVE-2020-0796) re: the SMBv3 security hole. Last night I left my PC asleep; this morning I came in to find my PC “ON” and updated without my permission. I am now at 18362.720. I am using StopUpdates10 to Pause updates. This has never happened since I’ve been using StopUpdates10 (a great tool by the way).
I realize KB4551762 is a critical update but @askWoody has said there are no known exploits. I don’t appreciate Microsoft again ignoring its own rules and NOT honoring my wishes to pause Updates.
Is StopUpdates10 a Microsoft tool?
1 user thanked author for this post.
-
Terry Muench
AskWoody Loungerhttps://greatis.com/stopupdates10/
No, StopUpdates10 is not from Microsoft. Get it at the link above. I should note that Microsoft finally gave Windows 10 users the ability to pause updates in v1903 aka 19H1. However if I have a choice between Microsoft and a 3rd party tool which probably works, I will choose the 3rd party tool!
-
Paul T
AskWoody MVPNo, StopUpdates10 is not from Microsoft
Then MS is not ignoring you, StopUpdates10 is failing you.
Stick to known and tested methods – group policy, pause button, metered connections.cheers, Paul
1 user thanked author for this post.
-
Terry Muench
GuestThen MS is not ignoring you, StopUpdates10 is failing you.
Stick to known and tested methods – group policy, pause button, metered connections.cheers, Paul
MO MICROSOFT FORCE-FED ME THIS UPDATE. I have StopUpdates10 on all 3 machines, KB4551762 was forced on me on only one machine. Microsoft ignored the face that updates were paused. Updates can also be paused in Windows 10 Home from Settings > Updates & security if you have v1903 (19H1) or higher.
-
b
Manager
-
-
-
WildBill
AskWoody PlusWhy be in a hurry to Update Windows?! You usually have us wait until the last week of the current month or the 1st week of next month… yes, humans can catch COVID-19, but electronics are immune to that virus. Sanitize the Outside of your desktops, laptops, tablets, smartphones… & even Echos & Nest smart speakers. Oh Heck, sanitize your smart watches & other wearables, too. Then… WASH YOUR DANG HANDS!
Bought a refurbished Windows 10 64-bit, currently updated to 22H2. Have broke the AC adapter cord going to the 8.1 machine, but before that, coaxed it into charging. Need to buy new adapter if wish to continue using it.
Wild Bill Rides Again...-
woody
ManagerThe reason why I’m concerned in this case is that Catalin Cimpanu — who has a good track record — says that several people have come up with working Proof of Concept exploits. In addition, Kevin Beaumont (who now works for Microsoft!) posted a video of a PoC.
It’s a long way from a working PoC to a widespread attack — but there’s still good reason to keep your ear to the ground.
Until there’s a real threat, though, in my opinion, it’s smarter to wait — at least until we see if there are any initial widespread problems.
4 users thanked author for this post.
anonymous
GuestWindows Server Version 1903 and Windows Server Version 1909 are Semi-Annual Channel releases and SAC releases are only available in Core or Nano Server variants.
Windows Server 2016 and 2019 are LTSC releases and are available with the Desktop Experience.
https://docs.microsoft.com/en-us/windows-server/get-started-19/servicing-channels-19
Francis
-
abbodi86
AskWoody_MVPYep
it’s not that only Server Core versions are affected, it’s only build 18362 is affected, which for Servers is only available in Core/Nano variant
i guess build 19041 (ver 2004) is also affected, but it’s not generally available yet, and maybe that’s why it didn’t recieve any updates this month yet (i.e. intentional delay to fix SMB issue)
-
woody
Manager -
EP
AskWoody_MVPnot only that, the COVID-19 “pandemic” may also have something to do with MS not releasing any new updates for 19041.x yet
also saw this Twitter link recently in a few forums:
https://twitter.com/NorthFaceHiker/status/1238157709288992769
-
This reply was modified 3 years, 6 months ago by
EP.
-
This reply was modified 3 years, 6 months ago by
-
EP
AskWoody_MVPcheck out this recent ZDNet article, woody:
https://www.zdnet.com/article/microsoft-patches-smbv3-wormable-bug-that-leaked-earlier-this-week/
Earlier this week, due to what looks like a miscommunication between Microsoft and some antivirus vendors, details about this bug leaked online.
-
b
ManagerMAR 11, 2020 9:45 AM PDT
Long story short, Microsoft apparently had the patch ready to go but pulled it at the last minute. Microsoft warned security software manufacturers in advance that the patch was coming (a common practice), but didn’t yell, “Stop the presses!” in time to keep the cows in the barn. Two organizations on the inside accidentally published, then pulled, descriptions. The story raced through the blogosphere.
https://www.computerworld.com/article/3532002/disappearing-smbv3-patch-non-security-office-patches-and-a-so-far-mild-patch-tuesday.htmlWindows 11 Pro version 22H2 build 22621.2361 + Microsoft 365 + Edge
1 user thanked author for this post.
Barry
AskWoody LoungerWCHS
AskWoody PlusHidden for me via WUshowhide is KB4540673 (released March 10) and KB4551762 (released March 12); the latter replaces the former according to the MS-Catalog.
So, when it comes time to update with the March Patch Tuesday/Thursday patches, should I unhide only the latter? If so, what I do about the former?
———————-
Version 1909, Feature Update Deferral= 365, Quality Update Deferral=0, Group Policy>Automatic Windows Update – #2 Notify download/install.-
PKCano
ManagerWin10 Security Updates are CUMULATIVE Updates. That means the latest one contains the previous ones. So if you install the latest one that contains the one before that, and the one before that…., it would be redundant to install the older patches. In fact, you won’t be able to do so.
If the newer patch supersedes (replaces) the older patch, the older patch will simply disappear from Windows Update after the newer one (containing it) is issued. By installing the newer patch, you install the older one by definition of “Cumulative”.
-
WCHS
AskWoody PlusI understand supersedence chains and what a cumulative update is.
You are right, the older patch (KB4540673) is no longer listed in the hidden updates; it WAS there, but it’s gone now. Only the new one (KB4551762) is listed there.
Currently, this is the WU display:
So, will the newer one disappear from this display, after the WU is next scheduled?
Evidently, it does not simultaneously get rid of the older one in wushowhide AND the newer one in the WU display.
-
Tex265
AskWoody PlusAssuming you have Windows 10 Pro and are using wushowhide and have Group Policy > Windows Update set to 2:
With the release of KB4551762, if you previously hid KB4540673 via wushowhide KB4540673 will now no longer show as hidden (or anywhere) in wushowhide.
But KB4551762 will now show up in wushowhide and maybe also the Windows Updater queue if you didn’t find it via wushowhide soon after it was released and hid it.
If it shows in Windows Updater queue, go to wushowhide and hide it. Then wait until Windows Updater automatically updates itself again (18- 24 hours). KB4551762 will then be hidden and removed from the Windows Updater.
To install it, unhide it and wait for Windows Updater to automatically update itself again and it will reappear in the Windows Updater queue to Download.
Windows 10 Pro x64 v22H2 and Windows 7 Pro SP1 x64 (RIP)2 users thanked author for this post.
-
-
-
Tomnibus
AskWoody Lounger -
geekdom
AskWoody_MVPFrom reading here, there has been no Microsoft mention of a fix to profile problems.
On permanent hiatus {with backup and coffee}
offline▸ Win10Pro 2004.19041.572 x64 i3-3220 RAM8GB HDD Firefox83.0b3 WindowsDefender
offline▸ Acer TravelMate P215-52 RAM8GB Win11Pro 22H2.22621.1265 x64 i5-10210U SSD Firefox106.0 MicrosoftDefender
online▸ Win11Pro 22H2.22621.1992 x64 i5-9400 RAM16GB HDD Firefox116.0b3 MicrosoftDefender
-
anonymous
Guest-
woody
Manager
r1ma
AskWoody LoungerJames Bond 007
AskWoody LoungerAs I understand it, currently this SMB3 vulnerability, according to CVE-2020-0796, is known to only affect SMB 3.1.1, which is only in Windows 10 (1903 / 1909 only?). Other Windows versions like Windows 8.1 use an older version (3.0.2 in the case of Windows 8.1) which is not affected (yet?). Is that correct, Woody?
If this is so then I would wait and not patch my Windows 8.1 systems any time soon. My Windows 8.1 systems are currently on January 2020 patch level.
Hope for the best. Prepare for the worst.
-
anonymous
Guestaccording to CVE-2020-0796, is known to only affect SMB 3.1.1, which is only in Windows 10 (1903 / 1909 only?).
Close. This vulnerability affects SMB compression, which is Windows 10 1903/1909 only (added in 2019). SMB compression was added after 3.1.1, they did not change the SMB version number when they added it. SMB 3.1.1 was available earlier, in Windows Server 2016, which does not have SMB compression and is not vulnerable.
8.1 is unaffected. LTSC 1809 is unaffected.
Compression is negotiated with a SMB2_NEGOTIATE context of SMB2_COMPRESSION_CAPABILITIES. Whether an implementation of SMB3 supports compression appears to be independent of whether it supports 3.1.1. Theoretically someone could make an smb server that does not support 3.1.1 but does support compression, but Microsoft did not do this.
Awfully confusing to have features without version numbers, but the reasoning is that compression is optional, so an implementation doesn’t have to support it.
gborn
AskWoody_MVPI received user feedback from several users reporting install errors 0x800f0988 and 0x800f0900 during installing Update KB4551762.
Windows 10: Fehler 0x800f0988/0x800f0900 bei KB4551762
An English blog post will follow (will link it internally within the blog post) later.Ex Microsoft Windows (Insider) MVP, Microsoft Answers Community Moderator, Blogger, Book author
https://www.borncity.com/win/
Alex5723
AskWoody PlusWell, Microsoft has done it again — force fed me KB4551762 (CVE-2020-0796) re: the SMBv3 security hole. Last night I left my PC asleep; this morning I came in to find my PC “ON” and updated without my permission.
I use the build-in deferrals in 1909 pro + GPEdit ‘Notify don’t download’ = 2 and haven’t been forced fed with March updates. My PC is on 24/365.
It is probably some glitch in your 3rd party blocker settings.
You can use Microsoft’s wushowhide.diagcab tool instead.Viewing 11 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Microsoft Backup triggers help-desk calls and confusion
by
Susan Bradley
15 minutes ago -
How Amazon ejected AI-written e-books from its bestseller lists
by
B. Livingston
16 minutes ago -
Ten stunning features in Microsoft Word
by
Peter Deegan
18 minutes ago -
Thunderbolt
by
Ed Tittel
18 minutes ago -
VeraCrypt updates
by
Alex5723
2 hours, 23 minutes ago -
A.I. and AskWoody
by
WCHS
3 hours, 36 minutes ago -
Where is Windows Update?
by
bsfinkel
2 hours ago -
mailwasher
by
jferr333
6 hours, 22 minutes ago -
Windows Photos
by
Linda2019
7 hours, 11 minutes ago -
OT QuickBooks payroll module not letting you efile 941
by
Susan Bradley
8 hours, 10 minutes ago -
MSA logins have been retired from DPC May 1st
by
Cormy1
8 hours, 8 minutes ago -
Administrator Lock
by
John Monge
12 hours, 9 minutes ago -
Skype cancels loopback audio
by
Steven
16 hours ago -
Python re-installation
by
WSepzcaw
14 hours, 24 minutes ago -
Finally updated to Thunderbird 115
by
EricB
6 hours, 54 minutes ago -
Hard drive boot up problem in Windows AND Linux
by
rkacmar
1 hour, 53 minutes ago -
WSUS fails to download monthly Cumulative Update for Windows 11 Version 22H2
by
Bruce23
7 hours, 23 minutes ago -
Excel tone
by
WSmmi16
12 hours, 5 minutes ago -
Wait for the bugs to be worked out
by
Susan Bradley
18 hours, 33 minutes ago -
What Windows Really Needs [Pure OPINION]
by
RetiredGeek
10 hours, 47 minutes ago -
“Winmail.dat” attachments when email is sent from Outlook to Thunderbird
by
MrJimPhelps
1 day, 2 hours ago -
win 11 22H2 Memory itegrity error
by
krism
1 day, 10 hours ago -
McLaren Health Care 6TB data breach
by
Microfix
1 day ago -
Long Live the Red Envelope Era | Farewell to DVDs | Netflix
by
Alex5723
1 day, 13 hours ago -
Faststone Image Viewer updates
by
Alex5723
2 days, 15 hours ago -
Malicious ad served inside Bing’s AI chatbot
by
Alex5723
2 days, 15 hours ago -
win10 pro 22H2 current minus 1 mo,to, win11. suggestions…
by
krism
2 days, 4 hours ago -
Microsoft entered negotiations to sell Bing to Apple in 2020
by
Alex5723
3 days ago -
X CEO shows her iPhone’s Home Screen – and X isn’t there
by
Alex5723
3 days, 1 hour ago -
Keeping an older Mac secure
by
Susan Bradley
3 days, 2 hours ago
Recent blog posts
- Microsoft Backup triggers help-desk calls and confusion
- How Amazon ejected AI-written e-books from its bestseller lists
- Ten stunning features in Microsoft Word
- Thunderbolt
- Wait for the bugs to be worked out
- MS-DEFCON 4: Is Windows 11 really a disaster?
- Windows 11, Surface, and Windows Copilot
- Why File Explorer keeps me on Windows
Key Links
S | M | T | W | T | F | S |
---|---|---|---|---|---|---|
1 | 2 | 3 | 4 | 5 | 6 | 7 |
8 | 9 | 10 | 11 | 12 | 13 | 14 |
15 | 16 | 17 | 18 | 19 | 20 | 21 |
22 | 23 | 24 | 25 | 26 | 27 | 28 |
29 | 30 | 31 |
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2023 by AskWoody Tech LLC. All Rights Reserved.