Microsoft is working to resolve a known issue that prevents Azure Virtual Desktop devices from downloading and installing recent security updates through Windows Server Update Services (WSUS).

See also: Microsoft finds bugs in some Netgear routers
"We are investigating an issue where devices running Windows 10 Enterprise multi-session, version 1909 may not be able to download updates later than May 2021," Microsoft says in the Windows Health Dashboard.
“This is observed in the “Settings” app under the Windows Update setting, where the message “You are up to date” will appear even if no updates have been installed after May 2021.”
The known issue affects both client (Windows 10 Enterprise multi-session, version 1909) and server (Windows Server multi-session, version 1909) platforms.
Microsoft is currently working on resolving this bug and will release an update to address the bug in an upcoming version of Windows.
See also: PoC exploit for Windows Print Spooler bug accidentally leaked
Available solutions
Until a fix for this issue is available, Microsoft is providing two solutions that will allow customers to apply monthly security updates to Azure Virtual Desktop systems from WSUS.
The first requires deploying up-to-date images, including all Azure Marketplace security updates, to affected devices.
The second approach, required if image redeployment is not an option, requires you to download the security updates from the Microsoft Update Catalog and manually install them on these devices.
“You can download these updates from the Microsoft Update Catalog as Microsoft Update (.msu) files and deploy them using the management solution,” Microsoft explains.
“These downloads are Microsoft Update (.msu) files. You can now add these files to your endpoint management system and deploy them to devices running Windows 10 Enterprise or Education, version 1909.”
See also: WordPress plugin bugs: Hackers can register as site admins
Detailed instructions on how to reorder images and manually install updates are available in support document KB5004926.
Information source: bleepingcomputer.com
