Welcome to the final Windows security update overview of 2024. Microsoft today released security updates for Windows, Office and other company products.
Our monthly guide helps home users and system administrators alike, as it provides an overview of security updates released. It also includes information about known issues, non-security updates, links to support pages, and download links among other useful information.
Good to know: Microsoft recently released an update for devices that are no longer supported and the current version of Windows 10. These are designed to inform users about support status and push feature updates if available.
Microsoft Windows Security Update: October 2024
You can download the following Excel spreadsheet to get a list of released updates. Click the following link to download the archive to a local device: Windows Security Update December 2024
executive Summary
- Microsoft released a total of 72 security updates for various Microsoft products and 1 security update for non-Microsoft issues (such as Chromium).
- The Windows clients with issues are:
- Windows 11 versions 22H2, 23H2, and 24H2
- Windows Server clients with issues:
- windows server 2008
- windows server 2025
- Windows 11, version 22H2, Home and Pro, has reached end of support. Microsoft will force devices to upgrade to newer Windows versions.
Product Overview
Each supported version of Windows and their critical vulnerabilities are listed below.
- Windows 10 version 22H2: 44 vulnerabilities, 8 serious, 36 critical
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49112
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49118
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49122
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49123
- Lightweight Directory Access Protocol (LDAP) client remote code execution vulnerability – CVE-2024-49124
- Windows Local Security Authorization Subsystem Service (LSASS) remote code execution vulnerability – CVE-2024-49126
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49127
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49132
- Windows 11 version 22H2 and 23H2: 44 vulnerabilities, 9 serious, 35 critical
- Windows Hyper-V Remote Code Execution Vulnerability CVE-2024-49117
- Also important improvements of Windows 10 version 22H2
- windows 11 version 24h2: 45 vulnerabilities, 9 serious, 46 critical
windows server products
- Windows Server 2008 R2 (Extended Support only): 22 vulnerabilities: 6 serious, 16 critical
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49112
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49122
- Lightweight Directory Access Protocol (LDAP) client remote code execution vulnerability – CVE-2024-49124
- Windows Local Security Authorization Subsystem Service (LSASS) remote code execution vulnerability – CVE-2024-49126
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49118
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49127
- Windows Server 2012 R2 (Extended Support only): unknown
- window server 2016: 33 Weaknesses: 13 critical, 20 critical
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49106
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49108
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49112
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49115
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49116
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49118
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49119
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49120
- Microsoft Message Queuing (MSMQ) remote code execution vulnerability – CVE-2024-49122
- Lightweight Directory Access Protocol (LDAP) client remote code execution vulnerability – CVE-2024-49124
- Windows Local Security Authorization Subsystem Service (LSASS) remote code execution vulnerability – CVE-2024-49126
- Windows Lightweight Directory Access Protocol (LDAP) remote code execution vulnerability – CVE-2024-49127
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49128
- windows server 2019: 56 Vulnerabilities: 15 Critical, 41 Critical
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49123
- Windows Remote Desktop Services Remote Code Execution Vulnerability – CVE-2024-49132
- Plus updates for all critical issues of Windows Server 2016
- Windows Server 2022: 41 vulnerabilities: 16 serious, 25 critical
- Windows Hyper-V Remote Code Execution Vulnerability CVE-2024-49117
- As well as updates for all critical issues of Server 2019 and 2016.
- windows server 2025: 57 vulnerabilities: 16 serious, 41 critical
- Similar to Windows Server 2022-
windows security update
windows 10 version 22h2
Updates and Improvements:
- Security improvements.
- Fixed an issue that prevented Windows activation after replacing the motherboard.
- Updates the Country and Operator Settings properties.
- Fixed IPP USB printer issue.
Windows 11 version 22H2 and 23H2
Updates and Improvements:
- Security improvements.
- Tailored Experience is now a personalized offering in the out-of-the-box experience. Turn off under Settings > Privacy & Security.
- The system tray shows a small date and time. The year is removed for the date. For time, AM/PM is removed. Can be reset under Settings > Date & Time.
- Start menu apps now support jumplists. Reveal with right click. Hold down shift-click before right-clicking to start as administrator.
- New options for Touchscreen Edge Gestures to turn off the left or right screen edge gesture. Configure under Settings > Bluetooth & devices > Touch.
- The IME toolbar is hidden when apps are in full screen mode.
- File Explorer option to share content on Android devices. Requires Phone Link app for PC.
- Dynamic Lighting got some new effects. Also a placeholder if no compatible device is found.
- Speech-to-text and text-to-speech correction. Updates are required through the Microsoft Store, which is displayed to the user when an update is required.
- Lots of non-security fixes.
windows 11 version 24h2
Updates and Improvements:
windows security update
- 2024-12 Cumulative Update for Windows 10 Version 1507 (KB5048703,
- 2024-12 Cumulative Update for Windows 10 Version 22H2 and Windows 10 Version 21H2 (KB5048652,
- 2024-12 Security Monthly Quality Rollup for Windows Server 2008 (KB5048710,
- 2024-12 Security Only Quality Update for Windows Server 2008 (KB5048744,
- 2024-12 Security Only Quality Update for Windows Server 2008 R2 for x64-based systems (KB5048676,
- 2024-12 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based systems (KB5048695,
- 2024-12 Security Monthly Quality Rollup for Windows Server 2012 (KB5048699,
- 2024-12 Security Monthly Quality Rollup for Windows Server 2012 R2 (KB5048735,
- 2024-12 Cumulative Update for Windows Server 2016 and Windows 10 version 1607 (KB5048671,
- 2024-12 Cumulative Update for Windows Server 2019 and Windows 10 version 1809 (KB5048661,
- 2024-12 Cumulative Update for Microsoft Server Operating Systems, Version 22H2 for x64-based systems (KB5048654,
- 2024-12 cumulative security hotpatch for Azure Stack HCI, version 21H2 and Windows Server 2022 Datacenter: Azure Edition for x64-based systems (KB5048800,
known issues
Windows 11 version 22H2 and 23H2
- ,Old) OpenSSH may fail to start, which prevents the SSH connection.
- Solution: Microsoft suggests updating permissions to temporarily resolve the issue. received instructions Here,
windows 11 version 24h2
- (Old) Players on ARM devices will not be able to play Roblox through the Microsoft Store.
Security Advisories and Updates
Microsoft Office Update
You will receive Office update information Here,
How to download and install the December 2024 security update
Critical updates, including most security updates, are automatically downloaded and installed on most unmanaged Windows devices. This includes most household appliances.
Home administrators can run a manual check for updates. Note that this may also reveal feature updates available for PC.
Step-by-step instructions:
- Open the Start menu, type Windows Update and select the result.
- Activate the “Check for Updates” button. This runs a manual check for updates.
- If the update does not download automatically, activate the “Download and Install All” button.
Updates are also published on the Microsoft Catalog website. You’ll find them linked below.
direct update download
If you prefer to download the update to install it manually, resource pages with direct download links are provided below.
windows 10 version 22h2
- KB5048652 – 2024-12 Cumulative Update for Windows 10 Version 21H2
windows 11 version 22h2
- KB5048685 – 2024-12 Cumulative Update for Windows 11 Version 22H2
- KB5048685 – 2024-12 Cumulative Update for Windows 11 Version 23H2
windows 11 version 24h2
- KB5048667 – 2024-12 Cumulative Update for Windows 11 Version 24H2
additional resources
Thanks for reading..