Security advisory
Patch TuesdayCriticalResolvedUpdated Mar 11, 2026

Microsoft Ships KB5078938 for Windows Server 2016 and Windows 10 1607

The March 2026 cumulative security update patches privilege-escalation, remote code execution and authentication-bypass issues on legacy 14393-branch systems.

Emanuel De AlmeidaMar 11, 2026, 1:27 AM5 min read
Severity
Critical
Status
Resolved
Entity
Microsoft
Confirmed by
Microsoft update documentation

Microsoft released KB5078938 on March 10, 2026, a cumulative security update for Windows 10 Version 1607 and Windows Server 2016 that raises the operating system build to 14393.8957. The update is part of the March Patch Tuesday cycle and addresses vulnerabilities across several core Windows components.

Because Windows Server 2016 is still common in production, admins running the 14393 branch need to plan deployment to close privilege-escalation, remote code execution and authentication-bypass exposures described for this update.

Key takeaways

  • KB5078938 was released on March 10, 2026 for Windows 10 1607 and Windows Server 2016.
  • The update moves affected systems to build 14393.8957.
  • It addresses kernel privilege escalation, networking-stack RCE, authentication bypass, information disclosure and denial-of-service issues.
  • Windows 10 1607 coverage is limited to Enterprise and Education editions still in extended support.
  • Roughly 1.2 GB of free disk space and a restart are required to install.

Affected

Vendors
Microsoft
Products
Windows 10 Version 1607Windows Server 2016Windows Server 2016 (Server Core)
Geography
Global

What KB5078938 is

KB5078938 is a cumulative security update released on March 10, 2026 for Windows 10 Version 1607 and Windows Server 2016. It updates affected systems to build 14393.8957 and is delivered as part of Microsoft's regular Patch Tuesday cadence.

According to the update documentation, KB5078938 resolves multiple vulnerability categories in core Windows components. Systems on the 14393 branch that skip the update remain exposed to the issues it addresses.

  • New OS build after install: 14393.8957
  • Release date: March 10, 2026

Vulnerabilities addressed

The update documentation describes fixes spanning several vulnerability classes rather than naming individual CVEs in the extracted material:

  • Windows kernel privilege escalation that could let local attackers gain SYSTEM-level rights.
  • Remote code execution in the Windows networking stack via specially crafted network packets, potentially without user interaction.
  • Authentication bypass in Windows authentication mechanisms affecting local and network scenarios.
  • Information disclosure that could expose memory contents, configuration details or user data.
  • Denial-of-service conditions that could crash systems or make them unresponsive.

The documentation attributes the root causes to improper input validation, memory-management issues and insufficient access controls, including inadequate bounds checking in kernel-mode drivers and weak validation of network protocol messages.

CVE details not in source

The extracted material does not list specific CVE identifiers, CVSS scores or exploitation status. Confirm those details against Microsoft's official Security Update Guide before risk-rating.

Affected systems

KB5078938 applies to the following operating systems and editions, all moving to build 14393.8957:

  • Windows 10 Version 1607, 32-bit (x86)
  • Windows 10 Version 1607, 64-bit (x64)
  • Windows Server 2016, 64-bit (x64)
  • Windows Server 2016 (Server Core), 64-bit (x64)

Editions matter for Windows 10 1607

Windows 10 Version 1607 reached end of service for Home and Pro editions in April 2018. This update primarily targets Enterprise and Education editions that continue to receive extended support.

Deployment and verification

Distribution channels

  • Windows Update: automatically delivered to eligible systems.
  • Microsoft Update Catalog: manual download for controlled deployments (search for KB5078938).
  • WSUS: appears under the Security Updates classification for approval.
  • SCCM: deployable through software update management workflows as a high-priority security update.

Requirements

  • No specific prerequisite updates required.
  • Approximately 1.2 GB free disk space (1.5 GB recommended to avoid failures).
  • System restart required to complete installation.
  • Typical install time of 15-30 minutes depending on hardware.

Verify installation

PowerShell
Get-HotFix -Id KB5078938
Get-ComputerInfo | Select-Object WindowsVersion, WindowsBuildLabEx

After a successful install, the build number should read 14393.8957.

Known issues

  • Installation may fail with error 0x80070643 when disk space is insufficient; ensure at least 1.5 GB free on the system drive.
  • A small number of systems may see temporary network connectivity issues immediately after restart, usually clearing within 2-3 minutes.
  • Legacy apps relying on deprecated authentication methods may need vendor updates for compatibility.
  • Systems with under 4 GB RAM may see brief performance degradation that typically normalizes within 24 hours.

If persistent problems occur, the update can be removed via Settings > Update & Security > Windows Update > View update history > Uninstall updates.

Timeline

Mar 10, 2026
KB5078938 releasedMicrosoft ships KB5078938 as part of the March 2026 Patch Tuesday cycle, updating Windows 10 1607 and Windows Server 2016 to build 14393.8957.

Impact & actions

Systems left unpatched on the 14393 branch remain exposed to privilege escalation, remote code execution, authentication bypass, information disclosure and denial-of-service issues.

Security: Closes multiple vulnerability classes including kernel privilege escalation and networking-stack remote code execution.

Privacy: Addresses information disclosure vulnerabilities that could expose sensitive system or user data.

Recommended actions · High urgency

  1. 1Deploy KB5078938 to all Windows 10 1607 and Windows Server 2016 systems
  2. 2Ensure at least 1.5 GB free disk space before installation
  3. 3Verify the resulting build shows 14393.8957
  4. 4Confirm specific CVEs and severity against Microsoft's Security Update Guide

Technical details

Affected versions
Windows 10 Version 1607 (pre-14393.8957), Windows Server 2016 (pre-14393.8957)
Patched versions
14393.8957

Mitigations

  • Install KB5078938 via Windows Update, WSUS, SCCM or the Microsoft Update Catalog

Response

Customer guidance

Microsoft's documentation recommends applying the update via automated update mechanisms, maintaining defense-in-depth controls such as network segmentation, monitoring for unusual activity, and keeping anti-malware solutions current.

FAQ

What does KB5078938 resolve?

It resolves multiple security vulnerabilities in Windows 10 Version 1607 and Windows Server 2016, including kernel privilege escalation, remote code execution in networking components, authentication bypass, information disclosure and denial-of-service issues. The update brings the OS build to 14393.8957.

Which systems require KB5078938?

It applies to Windows 10 Version 1607 (32-bit and 64-bit), Windows Server 2016 and Windows Server 2016 Server Core. For Windows 10 1607, coverage is limited to Enterprise and Education editions still in extended support.

How do I confirm KB5078938 is installed?

Run Get-HotFix -Id KB5078938 in PowerShell, and confirm the OS build reports 14393.8957 after a restart.

How much disk space does the update need?

About 1.2 GB is required, but Microsoft advises at least 1.5 GB free on the system drive to avoid installation failures such as error 0x80070643.

The bottom line

KB5078938, released March 10, 2026, updates Windows 10 Version 1607 and Windows Server 2016 to build 14393.8957 and fixes several classes of security vulnerabilities.

What happens next

Admins should schedule deployment and reconcile the update's specific CVEs and severity against Microsoft's official Security Update Guide.

What to do

Deploy KB5078938 and verify systems report build 14393.8957.
Topics:#Microsoft

Reader reviews

Rate this articleBe the first to rate
No written reviews yetRate the article above, or be the first to share your experience.

Related articles