KB4056891 not relevant even though it is

Having an issue with KB4056891 (MS18-JAN Cumulative Update).

For some reason it’s not showing relevant to a computer that doesn’t have it.

I can manually install the MSU file file, but installing or manually pushing it shows as not relevant…

I’m trying to load this as a part of our image and it just keeps failing

Are the endpoints in question updated with the AV fix (ie: their AV products have updated to allow the “QualityCompat” field to be set? If it doesn’t have any AV running we have a fixlet to set the registry entry.

Also are these AMD endpoints? We changed the relevance last night to only block the AMD specified problem processors with the patch ( see https://www.amd.com/en/corporate/speculative-execution ) so you would have have to have gathered that to clear the complete block on AMD processors.

Additionally there are 4 fixlets that cover KB4056891 so make sure you are looking at all of them as it depends on if you have caught up or not to the other Jan patch stream.

AV fix?

These are all Intel laptops

After letting it sit for a day, it did become relevant.
I added the relevant fixlet to the baseline just now

I should mention the patch was not relevant when it was imaging though. It’s possible I picked the wrong fixlet for this one.

If by AV fix, you mean Anti-Virus. There is no AV added in the image before or after. It’s just defender for E5.

This is during my image process of a new laptop.

Defender should have placed the value there when it updated. Its possible that Defender was the item holding you up as it had to be updated to place the Compat flag in the registry.