Sign in with Microsoft
Sign in or create an account.
Select a different account.
You have multiple accounts
Choose the account you want to sign in with.


The update that is described in this article resolves a vulnerability in Microsoft System Center 2012 R2 Virtual Machine Manager that could allow elevation of privilege if an attacker logs on to an affected system.


Microsoft has released security bulletin MS15-017. Learn more about how to obtain the fixes that are included in this security bulletin:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help protect your Windows-based computer from viruses and malware: Virus Solution and Security Center

Local support according to your country: International Support

More Information

Microsoft System Center Virtual Machine Manager 2012 R2Reference Table

The following table contains the security update information for this software.

Security update file names

For Microsoft System Center Virtual Machine Manager 2012 R2 UR 5 (VMM Server Update):
update kb3023195_vmmserver_amd64.msp

For Microsoft System Center Virtual Machine Manager 2012 R2 UR5 (Admin Console Update update):

Installation switches

See installation instructions

Update Log File


Restart requirement

In some cases, this update does not require a restart. If the required files are being used, this update will require a restart. If this behavior occurs, you receive a message that advises you to restart.

Removal information

Rollback to a previous update rollup is not supported.

File information

See Microsoft Knowledge Base Article 3023195

Registry key verification

HKLM\Software\Microsoft\Microsoft System Center Virtual Machine Manager Server\Setup\ProductVersion

Additional information about this updateThe following article contains additional information about this update as it relates to individual product versions. The article may contain specific information to the individual updates such as download URLs and installation instructions.

  • 3023195 Description of the security update for Update Rollup 5 for System Center 2012 R2 Virtual Machine Manager

    The following is the security issue that is included in Update Rollup 5. For more information about the non-security issues that are included in Update Rollup 5, see security update 3023195.

    • A vulnerability exists in Virtual Machine Manager when it incorrectly validates user roles. The vulnerability could allow elevation of privilege if an attacker logs on an affected system. An attacker must have valid Active Directory logon credentials and be able to log on with that credential to exploit the vulnerability.

File name

SHA1 hash

SHA256 hash










Need more help?

Want more options?

Explore subscription benefits, browse training courses, learn how to secure your device, and more.

Communities help you ask and answer questions, give feedback, and hear from experts with rich knowledge.

Was this information helpful?

What affected your experience?
By pressing submit, your feedback will be used to improve Microsoft products and services. Your IT admin will be able to collect this data. Privacy Statement.

Thank you for your feedback!