{"id":12191,"date":"2026-04-17T10:03:47","date_gmt":"2026-04-17T10:03:47","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2026\/04\/17\/microsoft-confirms-windows-servers-enter-reboot-loops-following-april-patches\/"},"modified":"2026-04-17T10:03:47","modified_gmt":"2026-04-17T10:03:47","slug":"microsoft-confirms-windows-servers-enter-reboot-loops-following-april-patches","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2026\/04\/17\/microsoft-confirms-windows-servers-enter-reboot-loops-following-april-patches\/","title":{"rendered":"Microsoft Confirms Windows Servers Enter Reboot Loops Following April Patches"},"content":{"rendered":"<p>    Microsoft Confirms Windows Servers Enter Reboot Loops Following April Patches<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>Microsoft has confirmed a critical known issue affecting Windows Server 2025 domain controllers following the deployment of the April 2026 Patch Tuesday cumulative update, KB5082063, where affected servers are entering repeated reboot loops after installation.<\/p>\n<p>Released on April 14, 2026, the <a href=\"https:\/\/cybersecuritynews.com\/windows-active-directory-vulnerability\/\" target=\"_blank\" rel=\"noreferrer noopener\">cumulative update KB5082063<\/a> (OS Build 26100.32690) is the standard monthly security update for Windows Server 2025, bundling the latest security fixes along with non-security improvements from March\u2019s optional preview release.<\/p>\n<p>However, Microsoft\u2019s official release changelog updated on April 16, 2026, now includes a known issue noting that \u201cDomain controllers might restart repeatedly after installing this update,\u201d flagging the reboot loop problem for enterprise IT administrators.<\/p>\n<p>The issue is compounded by a secondary problem: a subset of <a href=\"https:\/\/cybersecuritynews.com\/windows-11-and-server-2025-update\/\" target=\"_blank\" rel=\"noreferrer noopener\">Windows Server 2025 systems<\/a> is also failing to install the update entirely, throwing error code 0x800F0983 during deployment.<\/p>\n<p>Microsoft acknowledged it is actively monitoring diagnostic telemetry tied to the recurring install failure and confirmed that \u201ca limited number of affected servers might experience an installation failure accompanied by the error code 800F0983\u201d.<\/p>\n<p>Sysadmin reports on Reddit\u2019s Patch Tuesday megathread corroborate Microsoft\u2019s warning, with one administrator noting a domain controller became \u201cstuck in a reboot loop\u201d following KB5082063 installation.<\/p>\n<p>Booting into Directory Services Restore Mode (DSRM) was reported as functional, and uninstalling the update allowed the affected domain controller to reboot normally.<\/p>\n<p>This points squarely at the update as the root cause, particularly for non-Global Catalog (non-GC) domain controllers in complex Active Directory environments.<\/p>\n<h2 class=\"wp-block-heading\" id=\"bitlocker-recovery-also-triggered\"><strong>BitLocker Recovery Triggered<\/strong><\/h2>\n<p>Separately, Microsoft warned that devices with unrecommended BitLocker Group Policy configurations may be forced to enter BitLocker recovery mode after <a href=\"https:\/\/support.microsoft.com\/en-us\/topic\/april-14-2026-kb5082063-os-build-26100-32690-c57e289d-27c9-47cd-a183-72fabc62c5d7\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">installing KB5082063<\/a>, a known issue added to the changelog on April 14, 2026.<\/p>\n<p>While this is unlikely to affect home users, enterprise-managed servers with specific BitLocker policies could face access disruptions requiring manual recovery key entry.<\/p>\n<h2 class=\"wp-block-heading\" id=\"whats-fixed-in-kb5082063\"><strong>What\u2019s Fixed in KB5082063<\/strong><\/h2>\n<p>Despite the issues, the update delivers meaningful security and reliability improvements across several components:<\/p>\n<ul class=\"wp-block-list\">\n<li>\n<strong>Kerberos protocol<\/strong> \u2014 Changes the default <code>DefaultDomainSupportedEncTypes<\/code> value to AES-SHA1 for accounts lacking explicit AD encryption type definitions, tied to CVE-2026-20833<\/li>\n<li>\n<strong>Secure Boot<\/strong> \u2014 Adds high-confidence device targeting data for phased rollout of new Secure Boot certificates, reducing BitLocker recovery risk during transitions<\/li>\n<li>\n<strong>Remote Desktop<\/strong> \u2014 Strengthens phishing protection against malicious .rdp files by displaying all requested connection settings before connecting<\/li>\n<li>\n<strong>Windows Deployment Services (WDS)<\/strong> \u2014 Disables the \u201cHands-Free Deployment\u201d feature by default, hardening against CVE-2026-0386<\/li>\n<li>\n<strong>SMB over QUIC<\/strong> \u2014 Improves compression reliability, reducing timeouts for hybrid and cloud-connected environments<\/li>\n<li>\n<strong>PowerShell<\/strong> \u2014 Fixes the <code>Set-GPPrefRegistryValue<\/code> cmdlet to correctly preserve all imported registry values<\/li>\n<\/ul>\n<p>Microsoft has not yet published a formal workaround or fix timeline for the reboot loop issue, and an investigation into the 0x800F0983 install failure is ongoing.<\/p>\n<p>IT administrators are advised to monitor the <a href=\"https:\/\/learn.microsoft.com\/windows\/release-health\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Windows Server 2025 release health dashboard<\/a> for real-time updates, pause KB5082063 deployment on domain controllers until a resolution is available, and maintain offline BitLocker recovery keys ahead of patching.<\/p>\n<p>The servicing stack update KB5082062 (Build 26100.32692) is bundled alongside this release to ensure update infrastructure reliability.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/windows-servers-enter-reboot-loops\/\">Microsoft Confirms Windows Servers Enter Reboot Loops Following April Patches<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Guru Baran<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/windows-servers-enter-reboot-loops\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft Confirms Windows Servers Enter Reboot Loops Following April Patches Microsoft has confirmed a critical known issue affecting Windows Server 2025 domain controllers following the deployment of the April 2026 Patch Tuesday cumulative update, KB5082063, where affected servers are entering repeated reboot loops after installation. Released on April 14, 2026, the cumulative update KB5082063 (OS [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,395],"tags":[130],"class_list":["post-12191","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-windows","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12191"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=12191"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12191\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=12191"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=12191"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=12191"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}