Microsoft has started rolling out an emergency out-of-band update to fix problems with its record-breaking September patch Tuesday update. The software giant patched nearly 1,000 flaws in its biggest update ever this month, but it also introduced some bugs that have affected businesses, developers, and gamers.
Das Notfall-Update KB5129195 für Windows 11
Microsoft hat im September 2026 ein ausserplanmässiges Notfall-Update für Windows 11 veröffentlicht, um schwerwiegende Fehler zu beheben. Die Aktualisierung korrigiert unter anderem Probleme bei Remote Desktop, USB-Audio und Linux-VMs, die durch das zuvor ausgerollte, bisher grösste Patch-Day-Update mit fast 1'000 geschlossenen Sicherheitslücken entstanden waren. Microsoft distributed KB5129195 automatically via Windows Update. Zur Installation ist mindestens ein Neustart erforderlich. Da es sich um ein kumulatives Update handelt, sind sämtliche bisherigen Änderungen und Sicherheitskorrekturen des September-Patchdays direkt enthalten. Unter Windows 11 25H2 hebt das Update die Build-Nummer auf 26200.9457 an, unter Windows 11 24H2 auf 26100.9457. Auf Rechnern mit Windows 11 25H2 erscheint der Patch im Update-Bereich als “2026-09 Security Update (KB5129195) (26200.9457). Stehen gleichzeitig Aktualisierungen für Secure-Boot-Zertifikate oder die Firmware an, kann Windows den Rechner auch mehrfach neu starten. Die Installation soll je nach Hardware rund zehn Minuten in Anspruch nehmen.
”
Behobene Fehler bei Remote Desktop und Audio
Rekord-Patchday mit fast 1.000 geschlossenen Sicherheitslücken
Microsoft addressed 974 vulnerabilities in its September 2026 security update, making it the company’s largest Patch Tuesday release on record. Security researchers counted 119 critical vulnerabilities, with 723 entries affecting Windows components and 111 affecting Office products. The surge follows several months of unusually large releases, including 570 vulnerabilities in July and 400 in August. Security researchers have suggested that Microsoft’s growing use of AI-assisted discovery tools may be contributing to the increase. Microsoft has classified two vulnerabilities as actively exploited: CVE-2026-81963, an elevation-of-privilege flaw in the Windows Update Stack, and CVE-2026-85880, a heap-based buffer overflow in Windows Advanced Local Procedure Call (ALPC). Security researchers said both flaws could ultimately allow attackers to obtain SYSTEM-level privileges. Action1’s Jack Bicer told TechRepublic that CVE-2026-81963 can allow a low-privileged local attacker to gain SYSTEM privileges without user interaction. Mike Walters of Action1 said CVE-2026-85880 can let an attacker escape a low-privilege AppContainer and obtain SYSTEM privileges. Cohesity’s Amol Sarwate, in a statement to TechRepublic, said the two vulnerabilities should be the first priority because attackers can use them to move from an existing foothold to deeper control of a Windows machine. Das Notfall-Update KB5129195 schliesst in diesem Zusammenhang auch eine zusätzliche Sicherheitslücke in der Komponente Windows User-Mode Power Service (UMPS), die eine elevation of privilege
-Schwachstelle ausnutzt. Ein Angreifer mit Zugriff auf einen Rechner könnte sie laut Microsoft zur Ausweitung seiner Rechte nutzen und dadurch SYSTEM-Berechtigungen erlangen.

Offene Baustellen nach dem September-Update
Obwohl das Notfall-Update zentrale Probleme löst, bleiben einige Schwierigkeiten aus dem September-Patchday ungelöst. Auf einigen Rechnern gibt es zudem Probleme mit AMD-Radeon-GPUs. Doch dieses Problem wird durch KB5129195 nicht behoben. Ebenso löst KB5129195 offensichtlich nicht die ebenfalls durch den September-2026-Patch-Day verursachten Probleme mit dem File Explorer und der File History. Das September patch Tuesday affected folder shares on Hyper-V-based Linux virtual machines, Remote Desktop Services sessions, and some USB audio devices. Microsoft’s out-of-band update addresses these issues across Windows 11 versions 26h1, 25H2, and 24H2. Microsoft has also released updates for Windows Server 2025 and 2022, the LTSC versions of Windows 10, and Windows Server 2012 and Windows Server 2012 R2. In the past it was unusual for Microsoft to issue out-of-band updates to Windows, but it has become far more common this year. In January, the company was forced to issue four out-of-band updates after a buggy Windows 11 patch. In March, the company then had to issue two emergency updates because of installation failures and Microsoft account sign-in problems. Microsoft also released an out-of-band update in July to address an Intel driver issue that was causing performance issues and battery drain.

Verwandte Artikel