Forum Discussion
Did expediting the 2024-08 Quality Updates fail for anyone else?
Due to the CVE-2024-38063 vulnerability, we attempted to use the Expedited Quality Updates feature to enforce the immediate installation of the 2024-08 security updates. Unfortunately, the feature simply did not work. Even a couple weeks after deploying the expedited update profile, we had about 25% of our Windows endpoints still in "Pending" status, most of which were powered on 24/7.
We still have ConfigMgr in our environment, so I used CMPivot to run a query for events in the System log with "2024-08" in the message. This showed me that rather than installing the update and forcing a restart one day later as configured, the update was being installed, then reverted about ten hours later, then immediately re-installed again, over and over:
If I manually initiated a restart on any of the affected machines, the update was successfully finalized, so the issue wasn't a failure to install the update.
I've opened a case with Microsoft Support, but it is progressing slowly. If nobody else is seeing the issue, I will throw in the towel, but if it's more widespread, I think it is worth fighting to get this fixed (assuming that Microsoft isn't already aware and has simply chosen not to publicize it — for example, in the Windows release health blade in the MIcrosoft 365 Admin Center).
7 Replies
- RyanSteele-CoVIron Contributor
Well, it took eight months, and I had to beg for help on social media for a member of the product team to intercede on my behalf, but I am told this issue is fixed.
Edit: I was lied to. The issue is not fixed, at least not on Windows 10.
- hrxlaunchctlCopper Contributor
Yes, the August expedited quality update failed to install on ~50% of our endpoints. We manage our Windows endpoints stricly with Intune. We've been configuring and deploying expedited quality update policies in Intune for two years without issue. August was the first time this update policy type (expedited quality) did not work. We're noticing some strange behavior with the Windows Update Settings page on our endpoints too. It loads, doesn't load, fails to show certain options, says there are Group Policies configured (there aren't), and generally feels very buggy. I tried deploying the September quality update with an expedited policy to my own machine, same issue. I opened a ticket with Intune support, but they have exhausted their troubleshooting and have asked me to open a ticket with Windows support.
To confirm, I'm seeing the exact same behavior that you found. The update installs and then reverts over and over. This is September's, but this happened to August's update too.
- RyanSteele-CoVIron Contributor
Thank you, hrxlaunchctl. I am relieved to hear it isn't just our organization facing this issue. I will continue working with Microsoft Support to try and find a resolution.
- hrxlaunchctlCopper Contributor