KB5062597 ESU – Windows Server 2012 R2 July 2025

KB5062597 is the ESU Monthly Rollup Update for Windows Server 2012 R2. It was released on 8 July 2025 under the ‘Patch Tuesday’ program.

Salient points

  • KB5062597 supersedes KB5061018 released in July 2025.
  • KB5062597 requires a Servicing Stack Update to be installed prior to installing the main monthly rollup update. KB5058529 is the SSU corresponding to KB5062597.
  • If you install language pack after installing KB5062597, you would need to reinstall the security update once again. All language pack installations must be completed before installing the monthly rollup update on Windows Server 2012 R2.
  • KB5062597 is an Extended Security Update. A valid subscription key to the ESU program is required before installing the monthly rollup update.
  • Windows Server 2012 R2 is impacted by 61 security vulnerabilities reported in July 2025 security bulletin. 3 of these vulnerabilities are ‘CRITICAL’.
  • Two zero-day vulnerabilities affect Windows Server 2012 R2 and Windows Server 2012 Server Core installation.

Servicing Stack Update KB5058529

The Servicing Stack Update for Windows Server 2012 R2 for June and July 2025 is KB5058529. It corresponds to KB5061018 and KB5062597.

For automated deployments of KB5062597 through the Windows Update program, the Servicing Stack Update KB5058529 is offered for installation as part of the installation process of the monthly rollup update KB5062597. No further action is needed to install KB5058529 for automated installations of KB5061018.

WSUS administrators need to authorize or approve KB5058529 before KB5062597 is fetched and installed in WSUS.

If you choose to deploy KB5062597 manually, you need to download and install KB5058529 on the Windows Server 2012 R2. If KB5061018 was installed last month, SSU installation can be skipped as it is already installed during previous month’s update cycle.

The Servicing Stack Update file is a small file of 10.5 MB. Upon installation, it would not cause server reboot. Once the SSU is installed, you can proceed with the installation of the main monthly rollup update KB5062597.

Download KB5062597

You can download the monthly rollup update KB5062597 for Windows Server 2012 R2 from the Windows Update Catalog page shared below:

We would reiterate that you need a valid ESU program subscription before you could install the ESU KB5062597 on Windows Server 2012 R2.

Zero-day Vulnerabilities

No security vulnerabilities with zero-day threat levels affect Windows Server 2012 R2 and Windows Server 2012 R2 Server Core installation.

Critical vulnerabilities

There are 61 reported security vulnerabilities in Windows Server 2012 R2 for July 2025. The 3 CRITICAL vulnerabilities affecting Windows Server 2012 R2 are shared below.

VulnerabilityCVSSImpactDescription
CVE-2025-479819.8Remote Code ExecutionSPNEGO Extended Negotiation (NEGOEX) Security Mechanism – Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker to execute code over a network.
CVE-2025-479806.2Information disclosureExposure of sensitive information to an unauthorized actor in Windows Imaging Component allows an unauthorized attacker to disclose information locally.
CVE-2025-497358.1Remote Code ExecutionAn unauthenticated attacker could use a specially crafted application to leverage a cryptographic protocol vulnerability in Kerberos Key Distribution Center Proxy Service to perform remote code execution against the target.

KB5062597 – Changelog

Since this is an ESU, the focus remains on securing the Windows Server 2012 R2 deployments. The following changes have been reported for KB5062597:

  • [Internal Windows OS] Miscellaneous security improvements were made to internal Windows OS functionality. No additional issues are documented for this release.
  • [Microsoft RPC Netlogon protocol] This update includes a security hardening change to the Microsoft RPC Netlogon protocol. This change improves security by tightening access checks for a set of remote procedure call (RPC) requests.
  • [Stability issue] Fixed: This update addresses an issue observed in rare cases after installing the May 2025 security update and subsequent updates causing devices to experience stability issues. Some devices became unresponsive and stopped responding in specific scenarios.

Rajesh Dhawan

Simplifying technology, one step at a time.