Patch Tuesday was over two weeks ago, and that means that it’s time for more cumulative updates. Today, Microsoft released updates for every version of Windows 10 except the newest one, version 1809.
As usual, these updates contain a long list of fixes, longer than the actual Patch Tuesday updates. They’re optional, and you won’t receive them on your PC unless you manually check for updates and install them manually. If you don’t take them, these fixes will be included in the next Patch Tuesday updates, which are mandatory.
If you’re on the Windows 10 April 2018 Update, or version 1803, you’re going to get KB4493437, which brings the build number to 17134.753. You can manually download it here, and it contains the following fixes:
Addresses an issue that causes Internet Explorer to block a sub-resource download when its loaded over the HTTP protocol on a page hosted over the HTTPS protocol.
Addresses an issue that may prevent Custom URI Schemes for Application Protocol handlers from starting the corresponding application for a local intranet and trusted sites on Internet Explorer.
Allows the built-in Administrator account to run Microsoft Office setup after downloading the installer in Microsoft Edge.
Addresses an issue that may cause the loss of Favorites or the Reading List in Microsoft Edge after updating the operating system.
Addresses an issue that disables the new App Container feature for Microsoft Office.
Addresses an issue that prevents particular apps from launching when you set folder redirection for the Roaming AppData folder to a network path.
Addresses an issue that causes the removal of the Microsoft Office desktop app to stop responding and blocks the installation of a newer version of the app.
Addresses an issue that prevents the CALDATETIME structure from handling more than four Japanese Eras. For more information, see KB4469068.
Addresses an issue that causes ShellExperienceHost.exe to stop working when the start date for the Japanese Era is not on the first day of the month. For more information, see KB4469068.
Updates the NLS registry to support the new Japanese Era. For more information, see KB4469068.
Addresses an issue that causes the DateTimePicker to display the date incorrectly in the Japanese date format. For more information, see KB4469068.
Addresses an issue that causes the Date and Time Settings to control to cache old Eras and prevents the control from refreshing when the time enters the new Japanese Era. For more information, see KB4469068.
Updates fonts to support the new Japanese Era. For more information, see KB4469068.
Addresses an issue that prevents an input method editor (IME) from supporting the new Japanese Era character. For more information, see KB4469068.
Addresses an issue that causes the Clock and Calendar flyout control to display the day of the week incorrectly mapped to a date in the month of the new Japanese Era. For more information, see KB4469068.
Adds alternative fonts for the new Japanese Era fonts. For more information, see KB4469068.
Enables Text-To-Speech (TTS) functionality to support new Japanese Era characters. For more information, see KB4469068.
Addresses an issue that causes the error, “0x3B_c0000005_win32kfull!vSetPointer” when the kernel mode driver, win32kfull. Sys, accesses an invalid memory location.
Addresses an issue that may cause the UI to stop responding for several seconds when scrolling in windows that have many child windows.
Addresses an issue that may cause a touch screen to stop working after restart.
Allows existing devices that are managed by Configuration Manager to be enrolled in Microsoft Intune using Co-management without any user interaction. It does not require an active user to being logged in, and there is no Multi Factor Authentication (MFA) prompts. This update also allows the Co-managed mobile device management (MDM) enrollment to use the device credential it received when the device is enabled to join Hybrid Azure Active Directory (AADJ).
Addresses an issue that prevents BitLocker from encrypting a removable drive when there is no connectivity to store the recovery key in Active Directory or Azure Active Directory.
Addresses a gradual memory leak in LSASS.exe on systems that have cached login enabled. This issue mainly affects servers that process many interactive logon requests, such as web servers.
Addresses an issue that may allow a user to continue logging on to an account using a smart card after disabling the account.
Addresses an issue that prevents access to enterprise resources when using Kerberos with Windows Hello for Business (WHfB) credentials. This causes users to receive multiple prompts to provide their credentials.
Addresses an issue that slows server performance or causes the server to stop responding because of numerous Windows firewall rules. To enable the changes, add a new registry key “DeleteUserAppContainersOnLogoff” (DWORD) on “HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy” using Regedit, and set it to 1.
Addresses an issue with Always-On VPN exclusion routes that only work for link-local exclusions.
Addresses boot failure issues that occur when you restart particular hyper-converged infrastructure (HCI) virtual machines.
Addresses an issue that causes a roaming profile user to lose customized Start menu settings after upgrading the operating system (OS). After installing this update, administrators must enable the UseProfilePathMinorExtensionVersion registry setting described in KB4493782 for roaming user profiles (RUP). This key allows you to create a new RUP for an upgraded OS and prevents the loss of a custom Start menu. The RUP must be stored locally, and you must restart the device to enable the feature.
Addresses an issue that causes connection requests to the Remote Desktop Session Host (RDSH) servers in the deployment to fail. This issue occurs because of a deadlock in the Connection Broker.
Improves results when provisioning printers in educational environments that include multifunction printers.
Addresses an issue that prevents access to Server Message Block (SMB) shares on or from SMB-enabled physical or virtual network interface cards (NIC) that are configured with a virtual private network (VPN) interface.
Addresses an issue that prevents Print Workflow Applications from launching for Point and Print.
Addresses an issue that may prevent Universal Windows Platform (UWP) apps from receiving keyboard input when its user interface thread becomes too busy. This issue occurs when the UWP app has an embedded WebView control.