KB5077179


Microsoft has released cumulative security update KB5077179 (build 28000.1575) for Windows 11 version 26H1 as part of the February 2026 Patch Tuesday. This update is specifically intended for PCs based on Arm processors, including new devices with Snapdragon X2 Elite, X2 Elite Extreme, and X2 Plus chips that are not yet on sale. Build 28000.1575 is automatically installed on such devices only if you have opted out of testing in the Canary Channel with build 28000.1340 and have not yet updated to build 28020.1362 (Canary) or newer.

Microsoft will release Windows 11 version 26H1 in spring 2026 exclusively for new Arm PCs based on Snapdragon X2. This update is built on the new Bromine platform and includes internal performance and stability improvements for the new Qualcomm processors. Installation via Windows Update: open Settings > Windows Update and click Check for updates. A system restart is required to complete installation.


How the new features work:

Graphics: Fixed a crash in dxgmgs.sys occurring on some GPU configurations. The system mishandled the direct memory access (DMA) graph between the GPU and graphics kernel manager, leading to kernel integrity violation and KERNEL_SECURITY_CHECK_FAILURE due to an invalid command ring buffer state.

.NET Framework 3.5: Starting with Windows 11 26H1, this component is removed from the Features on Demand (FoD) list. Windows images no longer contain the Microsoft-Windows-NetFx3 provisioning package in the component store. The installer now downloads and installs dependencies separately, requiring an external MSI file with signed and verified CLR 2.0 assemblies.

Network: Fixed a bug in the supplicant stack for WPA3‑Personal – PTK (Pairwise Transient Key) was incorrectly computed during SAE handshake. The rsn_supplicant mechanism sometimes terminated the negotiation with an authentication code without waiting for AP confirmation, causing endless connection attempts. Validation of the BSS parameter extract is now fixed.

BitLocker: Hardware Lab Kit test sets lacked checks for logical vulnerabilities in TPM metadata rollback. Scripts emulating sudden power‑loss attacks during the volume encryption phase have been added. This allows certifying devices for correct BitLocker policy recovery when the system partition header is corrupted.

System stability: TrustedInstaller became unresponsive due to a deadlock in Windows Update package servicing transactions. The service acquired a mutex on the C:\Windows\WinSxS folder and did not release it when catalog file signature verification failed. Timeout logic is fixed – the service now forcibly terminates hung operations after 60 seconds.



The last 10 Windows updates:

Update Build Version Windows Channel Date
KB5089507 26220.8474 25H2 Windows 11 Beta 2026-05-15
KB5089499 26300.8493 25H2 Windows 11 Experimental 2026-05-15
KB5089497 28020.2134 26H1 Windows 11 Experimental 2026-05-15
KB5089570 28000.2176 26H1 Windows 11 Preview 2026-05-14
KB5089573 26200.8521 25H2 Windows 11 Preview 2026-05-19
KB5087420 22631.7079 23H2 Windows 11 Stable 2026-05-12
KB5089548 28000.2113 26H1 Windows 11 Stable 2026-05-12
KB5087544 19045.7291 22H2 (ESU) Windows 10 Stable 2026-05-12
KB5089549 26200.8457 24H2/25H2 Windows 11 Stable 2026-05-12
KB5089417 26220.8370 25H2 Windows 11 Beta 2026-05-08