Security News > 2024 > April > Microsoft releases Exchange hotfixes for security update issues
Microsoft has released hotfix updates to address multiple known issues impacting Exchange servers after installing the March 2024 security updates.
Although the April 2024 HU is optional, it also adds support for ECC certificates and Hybrid Modern Authentication for OWA/ECP. If you have installed the March 2024 SU and have not experienced any known issues fixed in the optional update and do not need the new features, you can wait for the next Exchange Server SU, which will also include these hotfixes.
"The April 2024 HU includes the same security updates as the March 2024 SU, while addressing known issues with the March 2024 SU," the Exchange Team explained.
In January, Redmond announced the end of mainstream support for Exchange Server 2019, saying it will keep releasing patches to fix the latest discovered security issues but will no longer accept requests for bug fixes and Design Change Requests.
Exchange Server 2016 reached its mainstream end date in October 2020 but is under extended support until October 2025, just like Exchange Server 2019.
The company now provides Microsoft 365 migration information on its documentation site and guidance to help global admins decide the migration path in Exchange Online.
News URL
Related news
- Microsoft pulls Exchange security updates over mail delivery issues (source)
- Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the Wild (source)
- Microsoft overhauls security for publishing Edge extensions (source)
- What Is Inside Microsoft’s Major Windows 11 Update? (source)
- Windows 10 KB5044273 update released with 9 fixes, security updates (source)
- Microsoft fixes Remote Desktop issues caused by Windows Server update (source)
- Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security tools (source)
- Microsoft warns it lost some customer's security logs for a month (source)
- Microsoft lost some customers’ cloud security logs (source)
- Microsoft Entra "security defaults" to make MFA setup mandatory (source)