KB5120700: Overview with user sentiment and feedback
Last Updated September 5, 2026
Probability of successful installation and continued operation of the machine
Overview
KB5120700 is an August 11, 2026 security and quality rollup for .NET Framework versions 4.6.2, 4.7, 4.7.1, and 4.7.2 on Windows Server 2012 R2. This update addresses multiple critical security vulnerabilities including elevation of privilege and remote code execution issues. The patch is part of the Extended Security Update (ESU) program for Windows Server 2012 R2, which reached end of support in October 2023.
General Purpose
- Addresses six critical security vulnerabilities: CVE-2026-65810 and CVE-2026-62872 (elevation of privilege), CVE-2026-62886, CVE-2026-62897, and CVE-2026-70354 (remote code execution), and CVE-2026-62902 (information disclosure)
- Provides cumulative security and reliability improvements to .NET Framework components across multiple versions
- Replaces previously released updates KB5102205 and KB5088861
- Requires prerequisite servicing stack update (KB5044411) for optimal installation reliability
- No new quality and reliability improvements beyond security fixes are included in this release
General Sentiment
This patch addresses significant security concerns with multiple critical vulnerabilities, making it an important update for systems running legacy .NET Framework versions. However, the update introduces two known issues affecting WPF applications, particularly those involving font rendering and XPS document handling. While workarounds are available, they require disabling security protections introduced by this same update, creating a trade-off between functionality and security. The patch is essential for security posture but requires careful testing before broad deployment.
Known Issues
- WPF applications may fail with System.IO.FileFormatException when printing or generating PDF/XPS content using certain fonts (including Calibri); workaround available via AppContext switch but disables security protections
- WPF applications printing or displaying print preview from in-memory XPS documents registered with System.IO.Packaging.PackageStore may fail with System.IO.FileFormatException; workaround available but requires code rebuild or disabling security protections
- Installation may fail on Azure Arc-enabled Windows Server 2012 R2 devices without proper endpoint configuration
Disclaimer: We take measures to ensure that AI-generated content is of the highest possible quality, but we cannot guarantee its accuracy and recommend that users do their own independent research. Generated on 2026-09-05 01:06 AM