After installation of KB4056892 boot failure, after roll-back error 0x800f0845

Anonymous
2018-01-04T22:13:27+00:00

Hi,

I have older AMD Athlon 64 X2 6000+, Asus MB, after installation of KB4056892 the system doesn't boot, it only shows the Windows logo without animation and nothing more. After several failed boots it do roll-back then it shows error 0x800f0845. Unfortunately, it seems it's not easy to disable the automatic updates without gpedit tweaks, so it tries installing and rolling-back the update over and over. The sfc /scannow shows no problem, in-place upgrade also doesn't seem to help. I can try full reinstall, but I doubt it will change anything. It seems like the update is binary incompatible with my old CPU. I understand that making the machine unbootable is the best protection from remote exploitation, but I would rather have the OS working. Especially if my CPU is not vulnerable to the Meltdown attack and the MS mitigation attempts for Spectre is more than questionable. I could find only some German and Italian people reporting the same issue (well the CPU is quite pre-historic and the KB update is very fresh), but no info / acknowledgment from the MS so far. I have Czech localization. Could anybody provide more information?

Windows for home | Windows 10 | Windows update

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

494 answers

Sort by: Most helpful
  1. Anonymous
    2018-02-01T13:46:01+00:00

    The vulnerability only becomes an issue if unauthorized users are able to run code on your system.  How they could do so is another matter, though it could be in numerous cunning ways.  The issue is that this can take advantage of a weakness in practically every CPU ever built - with the exception of Intel itaniums, and there is no real way of flagging that there has been a compromise.  

    Nope, those vulnerabilities can be exploited through a plain Javascript.

    > We should also take into account that WIN10 will happily run on our 10-15 year old hardware, which is a fantastic compatibility feature you should give MS some kudos for.  Its certainly given a couple of bits of kit, including an ancient Dell laptop, around here a new lease on life. 

    Nope we shouldn't, GNU/Linux runs perfectly on bunch of hw from ancient boxes and odd CPU architectures to most modern desktops and supercomputers. So why Windows shouldn't work on old devices?

    > Come to think of it I have bits of hardware here that used to work just fine, scanners and printers, yet the new OS drivers just stopped being made available, which pretty much forces you to buy new equipment, or retain win98/xp boxes simply to connect a favourite scanner.. so keep this in perspective, you can buy a complete system for what my old scanner cost. 

    Or you can put smallish GNU/Linux distro just for the purposes of still having working drivers, and at the same time gonna have all those Meltdown/Spectre patches, etc.

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2018-02-01T13:32:44+00:00

    I will try this.  Wouldn't it be good if MS would run this patch first?  Seems logical instead of force updating to make the system usable unless someone like you lets us know.  I hope this works and I will try it out as soon as I know I have a few hours to test.  Took quite some time to get my system back from before and no it did no roll back the update.  If I had not had a system restore that I manually created (since MS also turned off those too) then I would have had to do a windows repair that BTW can not be run from the install disk because MS fixed that as well.

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2018-02-01T13:24:43+00:00

    Risk?  The only risk as you say is if someone runs code that should not be run on a system that has been doing fine for a decade.  So yes I would rather take a risk than have my system forcibly disabled by the OS.  No that is not going over board that is just a fact.  If someone has a system that is vulnerable then MS simple makes it so it does not work.  The same as if you had a virus attack.  So no it is not bashing it is fact.  Rather than disable the system intentionally then would not have it been better to run a check on the system and pop up one of those annoying alerts that Windows 10 forces on us anyhow?  Your logic is flawed by saying we should run an update that prevents the system from being used rather than risking that an unlikely attack happen directly at the location.

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2018-02-01T13:10:31+00:00

    I'm certainly not a huge MS fan at the moment, they make me feel like a beta tester at times, but can we not go too overboard on the vendor bashing.   

    For those who dont know, Spectre/Meltdown is a vulnerability (not a virus), and rather a major one, so i can see why they were falling over each other trying to get patches out there.   Even Intel released a ROM update prematurely, which was subsequently retracted, god knows how many workstations were patched with that.

    The vulnerability only becomes an issue if unauthorized users are able to run code on your system.  How they could do so is another matter, though it could be in numerous cunning ways.  The issue is that this can take advantage of a weakness in practically every CPU ever built - with the exception of Intel itaniums, and there is no real way of flagging that there has been a compromise.  

    Its also referred to as side channel, where system area CPU computation can bleed into the user area, which effectively means if you wear a hoody, and can force and read those overflows, then there is a good chance of eventually capturing all sorts of privileged information that is executing.  

    According to MS, the AMD problem was caused by the specifications on the older AMDs chips not being reported accurately, I don't know whether that is correct or corporate speak for 'we stuffed up, and will not admit it'. 

    So yes these are annoying patch workarounds, as is the complete invisibility of MS support, but then would you rather live with the risk of no patches? 

    BTW -  I have a completely unpatched VISTA32 machine system happily humming away after 11 years, simply because its only purpose in life is to run Windows Media Centre - and it will never touch the internet, or a proxy, thats the only box i would not bother patching. 

    We should also take into account that WIN10 will happily run on our 10-15 year old hardware, which is a fantastic compatibility feature you should give MS some kudos for.  Its certainly given a couple of bits of kit, including an ancient Dell laptop, around here a new lease on life. 

    Come to think of it I have bits of hardware here that used to work just fine, scanners and printers, yet the new OS drivers just stopped being made available, which pretty much forces you to buy new equipment, or retain win98/xp boxes simply to connect a favourite scanner.. so keep this in perspective, you can buy a complete system for what my old scanner cost.

    Was this answer helpful?

    0 comments No comments
  5. Anonymous
    2018-02-01T10:44:18+00:00

    Define a virus then think about MS liability.  Even after knowing what this does they keep forcing it on people.  A virus intentionally harms your system then this is a virus and needs blocked.

    Was this answer helpful?

    0 comments No comments