NAVANEM
Security updateOS build 20348.3148

KB5052106: Windows Server 2022 Datacenter Azure Edition February 2025 Hotpatch (OS Build 20348.3148)

KB5052106 is the February 11, 2025 cumulative security hotpatch for Windows Server 2022 Datacenter: Azure Edition and Azure Stack HCI 21H2, producing OS build 20348.3148.

KB5052106: Windows Server 2022 Datacenter Azure Edition February 2025 Hotpatch (OS Build 20348.3148) — navanem Microsoft KB cover
KB5052106 · Windows Server · Security Update

Summary

This is a cumulative security hotpatch for Windows Server 2022 Datacenter: Azure Edition and Azure Stack HCI, version 21H2, released on February 11, 2025 (Patch Tuesday). It produces OS build 20348.3148, carries a Critical security severity rating, and is delivered as a hotpatch - meaning it can be applied without requiring a full system restart on supported Azure-connected configurations. Source: Microsoft Support.

Improvements and fixes

  • Internal OS security hardening - This update makes miscellaneous security improvements to internal OS functionality. No discrete per-component fix list is published on the official page for this hotpatch cycle.

Known issues

Microsoft lists no known issues for this update at the time of writing.

How to get this update

The following deployment channels are available for KB5052106:

  • Windows Update / Windows Server Update Services (WSUS) - When you use either of these channels, the latest Servicing Stack Update (SSU) is installed automatically alongside this update.
  • Microsoft Update Catalog - The update can be obtained manually from the catalog for targeted deployment.

Servicing stack prerequisite: The SSU bundled with this release is KB5050117, version 20348.3081. If you are applying this update to offline media, make sure your image already includes the required minimum SSU level before proceeding to avoid error 0x800f0823 (CBS_E_NEW_SERVICING_STACK_REQUIRED).

Frequently asked questions

Is KB5052106 a security update or an optional update?

KB5052106 is a security update - specifically a cumulative security hotpatch released on Patch Tuesday, February 11, 2025. Microsoft classifies it under Security Updates with a Critical severity rating. It is not an optional preview or a non-security quality update; applying it is recommended for all eligible Azure-connected servers on the hotpatch cadence.

Does installing this update require a system restart?

Because KB5052106 is a hotpatch, it is designed to be applied to running processes in memory without requiring the server to restart - one of the primary advantages of the hotpatch delivery model on Windows Server 2022 Datacenter: Azure Edition and Azure Stack HCI, version 21H2. A restart may still be required in certain edge-case conditions, but the standard hotpatch installation path avoids it.

What OS build number results from installing KB5052106?

After a successful installation, the resulting OS build is 20348.3148. You can confirm the installed build by running winver or checking Settings > System > About. The accompanying SSU version is 20348.3081, delivered via KB5050117 and installed automatically through Windows Update or WSUS.

How can this update be uninstalled if needed?

Hotpatch updates follow the standard Windows update uninstall process. You can remove KB5052106 via Settings > Windows Update > Update history > Uninstall updates, or from an elevated command prompt using wusa /uninstall /kb:5052106. As with all cumulative updates, Microsoft recommends testing in a non-production environment before broad deployment, and maintaining a valid system backup or snapshot prior to installation.

#windows-server-2022#hotpatch#security-update#patch-tuesday#azure-edition#azure-stack-hci#cumulative-update

Related topics