Microsoft pulls security KB4524244 due to Windows 10 issues

Feb 18, 2020 08:30 GMT  ·  By

Microsoft has recently pulled a Windows 10 security update after discovering issues causing the installation to fail or breaking down certain features if the installation was successful.

The update, which landed on Windows 10 as KB4524244, was supposed to resolve a security vulnerability that was discovered in Kaspersky Rescue Disk and which was publicly disclosed back in April 2019. While Kaspersky itself resolved it in August, Microsoft implemented additional patches to protect users running older versions of the software.

“Microsoft have updated a special database of revoked UEFI signatures (UEFI Revocation List File) in February 2020. This has been done to prevent attacks against Secure Boot using doctored previous versions of Kaspersky Rescue Disk,” Kaspersky explains.

Microsoft says update wouldn’t be reissued

The security vendor says its software is not at fault for the issues caused by the update, as the company performed a thorough investigation to determine whether the Rescue Disk tool is causing any compatibility bug after KB4524244 is installed on Windows 10.

“Microsoft has not reached out to Kaspersky concerning the update issue. After detailed internal analysis, our experts concluded that Kaspersky products have not been a cause of this issue,” Kaspersky says.

On the other hand, if the update installed correctly and no issues are encountered whatsoever, Kaspersky says no action is required on your side.

“You don’t need to remove the update and may use your operating system as usual. It is not vulnerable to the aforementioned issues. Vulnerable bootloaders will not run if your system is protected by Secure Boot. You will need to ensure you use a recent version of Kaspersky Rescue Disk should the need for this product arise,” the vendor says.

Microsoft says the update wouldn’t be re-issued, albeit fixes for the discovered bugs are on their way.