Microsoft has officially acknowledged that a bug in the security update prevents Windows 11 systems from upgrading to version 24H2 when using Windows Server Update Services (WSUS).
See also: Windows 11 24H2: Update triggers BSOD error

The issue is affecting organizations trying to deploy the latest feature update in enterprise environments. According to Release Status dashboard , devices that have installed the April Security Monthly Update (KB5055528), which was released on April 8, 2025, are experiencing errors when trying to download the Windows 11 24H2 build via WSUS. The company confirmed the issue after extensive user reports on various online platforms, including Reddit and the Microsoft Community.
The issue primarily affects IT administrators who use WSUS to manage and distribute updates across corporate networks.
WSUS allows administrators to defer, selectively approve, and schedule updates for specific devices or groups within an organization.
Microsoft stressed that home users are unlikely to encounter such problems, as WSUS is used almost exclusively in business and corporate environments.
See also: New Windows 11 trick allows Microsoft Account bypass
On May 5, 2025, Microsoft announced a mitigation solution through the Known Issue Rollback (KIR) for enterprise-managed devices. Administrators can resolve the issue by installing and configuring a special Group Policy, which is available for download.

The company has released two separate packages for systems running Windows 11 version 23H2 and Windows 11 version 22H2.
The specific Group Policy appears, after installation, in Computer Configuration > Administrative Templates > Group Policy Name.
Detailed instructions for developing and configuring these specific Group Policies are included in Microsoft's documentation on using Group Policy to implement the Known Issue Rollback mechanism.
For administrators who prefer an alternative approach, a registry-based solution has also been identified. This involves creating a .reg file with specific entries to modify the Windows registry with administrator privileges
Microsoft is continuing to investigate the root cause of the issue and has committed to providing additional updates as new information becomes available.
See also: Windows 11 – Testing the new Quick Machine Recovery tool
The issue affects Windows 11 client versions 23H2 and 22H2, while server platforms are not affected at all. The next scheduled update cycle is expected on May 13, 2025 and may include a permanent fix for the issue.
Source: cybersecuritynews
