Microsoft modifies November patches to bypass Lenovo server conflicts

From InfoWorld: Microsoft released patches for Server 2016, 2012R2, and 2012 on Nov. 8 that freeze specific Lenovo servers on reboot. The servers don’t finish the POST process and hang at the Lenovo splash screen. After many complaints, Lenovo issued six new UEFI firmware patches on Nov. 22. The next day, Microsoft altered six of its security patches, including the latest Win10 version 1607 cumulative update, KB 3200970, to add logic bypassing automatic installation of those patches on the affected servers.

The flurry of activity led to numerous missing patches on the Microsoft site for several hours on the afternoon of Nov. 23. We had several reports on AskWoody.com of patches that had simply disappeared -- they weren’t available from the Microsoft Update Catalog. By the end of the day on Nov. 23, all of the patches had returned.

If you’ve already installed the patches, there’s nothing you need to do. If you tried to install the patches and they didn’t appear in Windows Update, WSUS, the Download Center, or the Update Catalog, check again. They’re back.

If you have one of the affected Lenovo System X M5 or X6 servers, you need to get the UEFI firmware update installed and then manually install whichever Windows patch you may have missed. If your server won’t boot, Lenovo has instructions for manually flashing the UEFI firmware. As Lenovo’s fix page solemnly warns, “Replacing the system board will not fix the issue.”

View: Article @ Source Site