Below are the security fixes for the SharePoint OnPrem versions released this month.
Important:
SharePoint Foundation security fixes also have to be applied on SharePoint Server installations.
SharePoint Server security fixes also have to be applied on Project Server installations.
SharePoint 2013 Suite:
- KB 5002383 – SharePoint Foundation 2013 (core component)
Microsoft Support recommends to install the complete April 2023 CU for SharePoint 2013 rather than individual security fixes.
SharePoint Server 2016:
- KB 5002385 – SharePoint Server 2016 (language independent)
Microsoft Support recommends to install the complete April 2023 CU for SharePoint 2016 rather than individual security fixes.
SharePoint Server 2019:
- KB 5002373 – SharePoint Server 2019 (language independent)
Microsoft Support recommends to install the complete April 2023 CU for SharePoint 2019 rather than individual security fixes.
SharePoint Server Subscription Edition:
- KB 5002375 – SharePoint Server Subscription Edition
This security fix includes the complete April 2023 CU for SharePoint Server Subscription Edition.
Office Online Server:
- None
More information:
Permalink
Does this patch address the distributed cache bug from earlier patches? The details page doesn’t seem to indicate that it does. We need a fix for that before we start patching.
Permalink
Hi Mark,
no this is not fixed in April CU. The current solution is to use the steps provided in my blog post.
The current plan is to release a fix in May 2023 CU. As always: this is a planning date which might change based on the complexity of the required change and problems identified during testing of the fix.
Cheers,
Stefan
Permalink
We are spending more than we planned due to DCS bug and we really hope May CU includes the fix.
Permalink
We have last installed Feb 2023 CU and now planning to install the April CU. But there is no language fix this time. Is it okay to just install KB 5002373 after my last Feb CU (both files)?
Permalink
Hi Stefan,
unfortunately, we have installed the security fix KB5002383 for SharePoint 2013 via Office Update.
Can we now retroactively install the CU April 2023 (KB5002380) for Project Server 2013?
Cheers,
Dirk
Permalink
Hi Dirk,
yes this is possible.
Be aware that SharePoint 2013 is out of support since several month and no fixes for later detected security vulnerabilities were released for this version.
You should upgrade to a supported version of SharePoint asap.
Cheers,
Stefan