NAVANEM
Preview / optionalOS build 22631.6133

KB5067112 - Windows 11 23H2 Preview Update (OS Build 22631.6133) - October 28, 2025

Optional non-security preview update for Windows 11 version 23H2, releasing OS build 22631.6133 on October 28, 2025, with quality, compatibility, and networking fixes.

KB5067112: Windows 11 23H2 Preview Update (OS Build 22631.6133) - October 28, 2025 — navanem Microsoft KB cover
KB5067112 · Windows 11 · Preview Update

Summary

This is an optional, non-security preview update for Windows 11, version 23H2, releasing OS Build 22631.6133 on October 28, 2025. It addresses app compatibility, input, networking, shell, and storage issues. A companion servicing stack update (KB5068070, build 22621.6120) is included. See the full source at Microsoft Support.

Highlights

  • This non-security update includes quality improvements across compatibility, input, networking, shell, and storage areas.

Improvements and fixes

  • App compatibility: Fixes an issue that caused unexpected User Account Control (UAC) prompts for certain applications, including Autodesk AutoCAD, during MSI repair operations after the August 2025 Windows security update was installed.
  • Input: Fixes a problem where the touch keyboard fails to register key presses in text fields after the device wakes from sleep - for example, when entering a password at the sign-in screen - even though touch keyboard animations appear to display correctly.
  • Networking: Fixes an issue where external virtual switches lose their physical NIC bindings and are converted to internal switches when the Hyper-V host restarts, causing network connectivity loss. The root cause was incorrect detection of orphaned virtual switch objects during Host Network Service startup.
  • Shell: Enables the Personalized Offers feature during the Out-of-Box Experience (OOBE) device setup flow, and within Settings after the user reaches the desktop.
  • Storage: Fixes an issue affecting disk communication that produced connectivity errors during Azure Stack Hub or Azure Local cluster upgrades.

Known issues

Microsoft lists no known issues for this update at the time of writing.

How to get this update

Before installing, note that Microsoft combines the latest servicing stack update (SSU) with the latest cumulative update (LCU) in a single package. For Windows 11 23H2, use KB5027397 to upgrade to version 23H2 if you have not already done so.

The update is available through the following channels:

  • Windows Update: Go to Settings - Update & Security - Windows Update. The update appears under the Optional updates available section. Select the link to download and install it.
  • Windows Update for Business: These changes will be included in the next scheduled security update pushed through Windows Update for Business.
  • Microsoft Update Catalog: Download the standalone package directly from the Microsoft Update Catalog.
  • Windows Server Update Services (WSUS): Import the update manually into WSUS using the Microsoft Update Catalog.

To remove only the LCU after installing the combined SSU and LCU package, use the DISM /Remove-Package command with the LCU package name as the argument. You can find the package name by running DISM /online /get-packages. Running wusa.exe with the /uninstall switch will not work on the combined package because it contains the SSU, and the SSU cannot be removed after installation.

Frequently asked questions

Is KB5067112 a security update?

No. KB5067112 is an optional, non-security preview update for Windows 11, version 23H2. It focuses on quality, reliability, and compatibility improvements. Security fixes for this release will be delivered through the next monthly security update cycle rather than through this preview package.

Does this update include a servicing stack update?

Yes. Microsoft bundles the servicing stack update KB5068070 (build 22621.6120) with this cumulative update. The SSU improves the component responsible for installing Windows updates and cannot be removed from the system once installed alongside the LCU.

What should IT admins know about Secure Boot certificate expiration?

Secure Boot certificates on most Windows devices are set to expire starting in June 2026. Microsoft has been rolling out updated certificates to consumer and non-managed business devices for several months. Devices that have not yet received new certificates will continue to start normally, and standard Windows updates will still install. Admins should follow the Secure Boot Playbook for Windows clients and Windows Server for managed environments.

When does support end for Windows 11 version 23H2?

Support for the Home and Pro editions of Windows 11, version 23H2 ended on November 11, 2025. Support for the Enterprise and Education editions ends on November 10, 2026. Microsoft recommends upgrading to the latest version of Windows 11 to remain protected and receive ongoing updates.

#windows-11#23h2#preview-update#non-security#uac#networking#touch-keyboard

Related topics