Known Issues and Considerations when Using Patch My PC
The article below shows known issues and considerations to make when deploying specific products using Patch My PC.
Patch My PC will periodically reevaluate product behavior and adjust these lists as necessary. Customers encountering unexpected product behavior should open a support request so that Patch My PC can evaluate any possible issues.
Topics covered in this article:
Products with Unique Install Behavior
The following table contains a list of products that have unique installation behaviors.
|Adobe Acrobat Products||Updates may fail to install with exit code 1612 or 0x8024002D||This is a known issue with Adobe Products. More information on Adobe's websitehere and here and Patch My PC's KB article|
|Apple iCloud||Updates may fail to install if Apple Application Support (x86) is not installed||Install Apple Application Support (x86) before attempting to install iCloud|
|Apple iTunes||Application may fail to install if Bonjour of the same architecture is not installed.||Install Bonjour with the same architecture as iTunes before installing iTunes
The code execution cannot proceed because dnssd.dll was not found. Reinstalling the program may fix this problem.
|Cisco AnyConnect Suite||Unique Update Behavior||Update 2021-07-30: The logic from our applicability rules that would block install if the NAM Module is installed has been removed. If the NAM module is being used, we recommend using the script process to update AnyConnect specified here: Install Cisco AnyConnect Modules in a Specific Order
At this time Updates to Cisco Anyconnect through the Software Update mechanisms will not occur if the Network Access Manager is installed. This behavior is in place to prevent loss of network connectivity, as the order of software update installation cannot be defined. The recommended workaround is to deploy updates through Base App installs in order to control the order of installation.
|Cisco AnyConnect Secure Mobility Client||Update may fail to install with certain right-click options.||Selecting the right click option to block the application from starting during the installation under "Manage Conflicting Processes" may result in a 1603 error code and prevent other modules from installing.|
|Cisco AnyConnect Modules||Unique Update Behavior||Cisco AnyConnect Modules will not show as required until the Main Secure Mobility Client is installed. This is set in order to ensure the modules install after the main client. You can install all needed modules before the Secure Mobility Client in one update by following the optional customisation in this article: How to bundle Cisco AnyConnect modules to install in a specific order.|
|Cisco Webex||Installation may fail on non-english Operating Systems||Add the following to the command line to allow the installation to continue: ProductLanguage=1033|
|Citrix WorkSpace||Custom commands require ; even if the proceeding setting is not configured.||For setting STOREX configurations, 4 arguments are expected, Even if an argument is not provided, For example use the following format if only providing the first 2 arguments: STORE0="COMPANY;https://citrix.company.com/Citrix/Company/Discovery;;"|
|Java (JRE and JDK) Titled "Latest"||Products with the word "Latest" in the title will always remove all previous versions and install the latest version available, this allows for easy upgrades for updates that are usually locked to a specific version.||More information|
|Microsoft Edge WebView2 (Uninstall)||Uninstall will return an exit code 19 even when the uninstall happened successfully.||Once the detection runs again, or the user tries to run the uninstall again the detection should validate the software removal and return a success status.|
|Microsoft Edge||Shortcuts may still be created with the "Delete Desktop Shortcut(s)..." right click option selected||Use the "Modify command line" right click option to add: DONOTCREATEDESKTOPSHORTCUT=true|
|Microsoft Teams||Base Install Only, Updates will not Apply||Patch My PC utilizes the Machine-Wide installer for Microsoft Teams. The Machine-Wide installer uses the same MSI Product Code for all versions. This causes multiple issues concerning updates to the product as well as detection of new versions. Microsoft does not recommend updating the Teams MSI once installed (Microsoft Docs)|
|Mimecast for Outlook||Base Install Apps do not take Outlook bitness into consideration.||Deploy the Base Install Apps based on the Outlook bitness not device bitness|
|Nextcloud||Trying to deploy a newer Intune Update of Nextcloud to a device with Nextcloud 3.1 or older installed will result in the update evaluating as not applicable.|
This is only an issue with Intune Updates, not SCCM or WSUS.
|Nextcloud stopped supplying an .exe installer after version 3.1 and now only provide .msi installers. The issue is that the .exe installer installed the 64bit app in 32bit locations in the registry on a 64bit system. As a result we can not differentiate between a pre-existing 32bit or 64bit install of Nextcloud on a 64bit system. We need to avoid inadvertently upgrading customers' product's architecture.
To update from 3.1 to a newer version on a device in Intune, deploy the Intune App of Nextcloud to your devices. After your devices are off version 3.1 and are now installed using the .msi installer, moving forward you can use the software update of Nextcloud from the Intune Updates tab.
|Oracle VirtualBox||Expired Code singing certificate included in install may cause install to not complete||Oracle should update their code signing certificate to fix this issue. As a workaround, Patch My PC has created a script that can be used as a prescript to install the certificate: Link to Prescript on GitHub|
|PuTTY||Update will not show as applicable if version <=.70 is installed.||The install type of PuTTY changed from an EXE to MSI after version .70.Patch My PC only supports the MSI version of PuTTY.|
|R for Windows||R for Windows won't publish||R for Windows was not signed with the latest 4.2.0 release. Patch My PC is waiting until the installer is signed before adding back to the catalog|
|Remote Desktop Client for Windows Desktop||Apps or Updates fail to detect after installing on non-English systems||This software localises the DisplayName registry value to the language of the OS. At this time it is not possible for us to detect multiple possible values of the DisplayName for all languages, other than English.|
|VMWare Tools 12.x||App/Update takes 2 tries to install||VMWare Tools 12.x first installs a prerequisite VC++ 2019-2022, then prompts for reboot. The App is installed successfully after the prereq is installed. As a workaround, ensure Microsoft Visual C++ 2015-2022 (32 and 64-bit) are installed before VMWare Tools attempts to install.|
|Wireshark||npcap is not installed or patched||Wireshark uses npcap for data capture. Unfortunately Npcap does not allow silent installation without an OEM license, this includes the Npcap provided in the Wireshark installer. See the Npcap page under Npcap OEM for Commercial Use and Redistribution for more information.|
Products that Require Applications be Closed Before Installation
The following products will fail to update if the process is open while the update installation is attempted. You can control how to close or notify the user using our feature to manage conflicting processes when updating third-party applications.
Product Name Error Code or Behavior
Dell Display Manager 0x87D00705
FileZilla 0x87D00705, or the binaries are not updated, but the Add Remove Programs entry is.
Irfanview Returns Exit Code 0, but application is not updated
Lenovo Dock Manager 5 or 0x80070005. Installation may partially complete.
Mimecast for Outlook Notepad++ 0x87D00705
Notepad++ needs to be closed before an update is installed. If Notepad++ is open, the version in the registry may update, but the actual files in program files do not update. If the version in the registry is updated, it will cause the detection to show installed.
To resolve this, ensure to use the manage conflicting processes feature for Notepad++.
Python Installation will complete, but executable versions may not update.
Splunk Universal Forwarder 0x80070643
Visual Studio Code 5 or 0x80070005, also, see this known issue from the vendor.
WinMerge 5 or 0x80070005
WinSCP 5 or 0x80070005
Products that Require a Manual Download
The following products require manual download because their installer binaries are behind a paywall. For more details about how to use the local content repository, please see our guide local content repository for licensed applications that require manual download.
Product Name Download Location
ClickShare Desktop App Machine-Wide Installer Download Page
Bluebeam Revu 2020 (x64) Download Page
Bluebeam OCR 2020 Download Page
Bluebeam Revu 2021 (MSI-x64) Download Page
Bluebeam OCR 2021 (MSI-x64) Download Page
Cisco AnyConnect Secure Mobility Client Download Page
Cisco AnyConnect AMP Enabler Module Download Page
Cisco AnyConnect Diagnostics and Reporting Tool Download Page
Cisco AnyConnect ISE Compliance Module Download Page
Cisco AnyConnect ISE Posture Module Download Page
Cisco AnyConnect Network Access Manager Download Page
Cisco AnyConnect Network Visibility Module Download Page
Cisco AnyConnect Posture Module Download Page
Cisco AnyConnect Start Before Login Module Download Page
Cisco AnyConnect Umbrella Roaming Security Module Download Page
Cisco AnyConnect Web Security Module Download Page
Cisco Secure Client - AnyConnect VPN Download Page
Cisco Secure Client - Diagnostics and Reporting Tool Download Page
Cisco Secure Client - ISE Posture Download Page
Cisco Secure Client - Network Access Manager Download Page
Cisco Secure Client - Network Visibility Module Download Page
Cisco Secure Client - Secure Firewall Posture Download Page
Cisco Secure Client - Start Before Login Download Page
Cisco Secure Client - Umbrella Download Page
Duo Authentication for Windows Logon (x64) - MSI Install Download Page
FortiClient VPN (EXE-x64) Download Page
FortiClient VPN (MSI-x64) Download Page
Ivanti Secure Access Client (x64) Download Page
Kofax Power PDF 4 Advanced Download Page
Kofax Power PDF 4.1 Advanced Download Page
Mimecast for Outlook (x86) Download Page
Mimecast for Outlook (x64) Download Page
Npcap OEM Download Page
Oracle Java 8 (x86) Download Page
Oracle Java 8 (x64) Download Page
Oracle Java SE Development Kit 8 (x64) Download Page
Oracle Java SE Development Kit 11 (x64) Download Page
Oracle Java SE Development Kit 8 (x86) Download Page
GlobalProtect 5 Download Page
GlobalProtect 6 Download Page
kuandoHUB Download Page
kuando Busylight for Cisco Jabber Download Page
kuando Busylight for MS Teams (x64) Download Page
kuando Busylight for Zoom Download Page
Pulse Connect Secure (x64) Download Page
Right Click Tools Download Page
TeamViewer 15 (x86) - MSI Install Download Page
TeamViewer 15 (x64) - MSI Install Download Page
TeamViewer Host 15 (x86) - MSI Install Download Page
think-cell (MSI) Download Page
List of Known Issues
The table below lists any known issues we are tracking.
|Issue||Detected Version||Fixed Version||Status|
|Errors may occur when deleting Intune Apps/Updates or gathering Intune Deployment Statistics when on GCC High (System.ObjectDisposedException)||N/A||126.96.36.199||Fixed|
|TeamViewer (EXE) will have a hash mismatch every sync||N/A - Issue started 8/22/2022||TeamViewer has rolled back the change on 9/08/2022||TeamViewer is randomizing part of the download binary on every download, causing a Hash Mismatch. Patch My PC is investigating workarounds. UPDATE: TeamViewer has rolled back the change on 9/08/2022|
|Customers with the Publisher installed on Windows Server 2012 R2 or older, certain products may fail to download. PatchMyPC.log and alerts report "The request was aborted: Could not create SSL/TLS secure channel." This is because These web servers only allow particular TLS ciphers that are not supported in IE components for Windows Server 2012 R2 and older. |
Currently Affected Products Include:
TechSmith Products, Tableau Products, and Cisco WebEx
Workaround: manually download the installer for Snagit or Camtasia, store it in your Local Content Repository, and enable the option to Check the local content repository for content files before attempting to download content files from the internet.
Patch My PC recommends upgrading from Server 2012R2 to a newer Windows Server version if possible, as we are seeing a trend of vendors moving their downloads to ciphers unsupported on Windows Server 2012R2
|N/A||N/A||Known issue. Patch My PC is investigating potential workarounds.|
|Auto-publishing rules configured for WSUS/ConfigMgr updates, with any custom options set in the dropdown beside it, will produce continuous alerts and log entries in PatchMyPC.log to republish the updates meeting the auto-publishing rule threshold.|
Workaround: Apply custom actions at the All Products or vendor level in the Updates tab. This will apply the custom actions to all child items including those not yet enabled. These will still be applied to child items automatically enabled by auto-publishing.
|1.5.1 or 1.8.0||188.8.131.52||Fixed|
|When adding a single right-click option (Pre/Post Script, MST File, etc.) on ConfigMgr Apps, the content will be updated but the command line may not be updated accordingly.||184.108.40.206||220.127.116.11||Fixed|
|The Patch My PC Publisher may attempt to revise an update on every sync. This occurs when an update has been republished twice, the Publisher checks the wrong revision for changes and attempts to change it every sync||18.104.22.168||22.214.171.124||Fixed|
|TeamViewer update may fail if the "Prevent the end-user from opening an application while the application is updating" is selected under "Manage Conflicting Processes"||126.96.36.199||N/A||Fixed|
|Auto-enable feature of Intune Scanning may cause duplicate Win32 apps to be published within Intune. This would occur if some applications were found in an Intune scan, and a ConfigMgr scan.||188.8.131.52||Fixed|
|MSP-based products do not support most right-click custom actions due to WSUS applicability.||184.108.40.206||N/A||Consideration|
|Zoom Meetings may upgrade to the newly released 64-bit version when the 32-bit version was installed, which may cause settings to revert to defaults. From 3/29/2021 to 4/1/2021, Patch My PC offered the 64-bit version of Zoom Meetings 5.6.1 in place of the 32-bit version of Zoom Meetings. If this update was synced and deployed during this time, 32-bit versions of Zoom Meetings would be upgraded to 64-bit versions, this does not break the functionality of the application but my revert settings to default.|
The 4/1/2021 catalog release replaced the 64-bit update with the proper 32 and 64 bit updates for Zoom Meetings, these updates now detect the architecture of Zoom Meetings that is installed and will install the appropriate version as applicable.
|5.6.1 (3/29/2021)||5.6.1 (4/1/2021)||Fixed|
|Bug when selecting scopes: If a user attempts to set scopes at the Vendor or All Products level in ConfigMgr, upon closing and reopening the publisher, the App tree will not show any applications at all.||220.127.116.11||18.104.22.168||Fixed|
|An error occurred while testing TCP port.: No connection could be made because the target machine actively refused it ||22.214.171.124||126.96.36.199||Fixed|
|The Publisher will Publish an Intune Application, or Intune Update if found during a scan, despite being marked to 'Exclude from auto-publishing'||188.8.131.52||184.108.40.206||Fixed|
|Software may be marked for revision during every sync of the Publisher. This would occur when PreventConflictingProcessRestart was in use and the KillProcess was set instead of Notify.||220.127.116.11||18.104.22.168||Fixed|
|The '...delay the in-place application upgrade by...' does not respect all configuration options such as 'Retain up to # previously created applications'||Various||22.214.171.124||Fixed|
|User Based ConfigMgr Applications may default to System Type installation in ConfigMgr.||126.96.36.199||188.8.131.52||Fixed|
|Interaction with the Manage Conflicting Process pop-up may not be possible if "Do not allow user deferral" option is set in Manage Conflicting Processes||184.108.40.206||220.127.116.11||Fixed|
|Intune apps and updates do not use the specified temp directory for downloads||18.104.22.168||22.214.171.124||Fixed|
|Webhook Option to send to Slack may be reverted to Teams upon opening the Patch My PC Publisher GUI|
Workaround: When opening the Publisher and using Slack Webhooks, reset the option to Slack before saving and closing the Publisher.
|Manage Conflicting Processes may fail to enumerate the blocking processes causing the UI to close, and kill the blocking process unexpectedly.||126.96.36.199||188.8.131.52||Fixed|
|Manage Role Scope tags will fail if a non-existent scope is associated with a ConfigMgr app.||184.108.40.206||Fixed|
|Intune assignment only allows a group to be specified once.||220.127.116.11||18.104.22.168||Fixed|
|The 'Manage Conflicting Process' UI shows 'install' language instead of 'update' language when performing an Intune Update||22.214.171.124||126.96.36.199||Fixed|
|ConfigMgr apps may have their content refreshed every sync if a PreCommandArg, UninstallPostCommandArg, or PostCommandArgUninstall are specified||188.8.131.52||184.108.40.206||Fixed|
|The 'Prevent the end-user from opening an application while the application is updating' option when used with an Intune app or update may result in a 'Windows cannot access the specified device, path, or file....' error message.||220.127.116.11||18.104.22.168||Fixed|
|ConfigMgr application may revise every sync.||22.214.171.124||126.96.36.199||Fixed|
|Some products published to WSUS report as failed installation from the clients, however the software is actually updated successfully on the client. This currently impacts Adobe Digital Editions, Nextcloud, and Dell Command Update for Windows. This is because in the catalogue custom defined success exit codes failed to publish correct to WSUS using the Publisher. These products used non-standard successful exit codes.||Various||188.8.131.52||Fixed|
|If 'Delay in-place upgrade' and 'App retention' are enabled for ConfigMgr apps you may see duplicate applications created||184.108.40.206||220.127.116.11||Fixed|
|'Recreate Detection Script' does not populate the correct registry hive for User based apps in ConfigMgr||18.104.22.168||22.214.171.124||Fixed|
|Application uninstallation may report failure if the uninstall process creates a child process causes ScriptRunner to exit prior to uninstallation completing||1.0||126.96.36.199||Fixed|
|Publisher may fail to properly parse product parameters which contain nested quotes causing continuous revisions or errors when parsing arguments||Various||188.8.131.52||Fixed|
|When you republish an Intune application the icon is not set.||184.108.40.206||220.127.116.11||Fixed|
|Organization Name is not set properly for ConfigMgr applications.||18.104.22.168||22.214.171.124||Fixed|
|When 'override manual assignment changes' is checked for an Intune product, and you have an 'exclude' assignment the Publisher will fail to process all assignments.||126.96.36.199||188.8.131.52||Fixed|
|"Republish" does not compare the hash of scripts and files for ConfigMgr||184.108.40.206||220.127.116.11||Fixed|
|"Republish" may cause multiple republish operations for the same product to happen if used across multiple tabs.||18.104.22.168||22.214.171.124||Fixed|
|Required deployments, including task sequence installs, of ConfigMgr Application for Adobe Acrobat Reader DC Continuous 21.007.20099 (x64) fail with exit code 150201. Clicking "retry" and available deployments succeed.|
Workaround: set the user experience option on the deployment type to "Allow users to view and interact with the program installation".
|Adobe Acrobat Reader DC Continuous 21.007.20099 (x64)||N/A||Known issue.|
|Republishing an Intune application or Update which has existing assignments may cause the assignment to be deleted. It will be recreated during the following sync.||126.96.36.199||188.8.131.52||Fixed|
|The "Delay in-place upgrade" feature is used for ConfigMgr applications the delay may be off by one day if the server is configured with certain timezones.||Various||184.108.40.206||Fixed|
|Manage Conflicting Processes may fail to launch if the 'First notification delayed +...' setting is used and the client device has a culture with a short-date format that is not parsable by the en-US datetime parse method||Various||220.127.116.11||Fixed|
|Republishing a ConfigMgr application removes application supersedence relationships.||18.104.22.168||22.214.171.124||Fixed|
|Republishing a ConfigMgr application breaks the Manage Conflicting Process option to use 'ConfigMgr app max run time'||126.96.36.199||188.8.131.52||Fixed|
|Manage ESP (Enrollment Status Page) within the Publisher throws a 403 forbidden error.||All||All||Fixed|
|PowerShell Requirement Script for Adobe Acrobat Reader DC Continuous (en-US) fails to code sign properly. We are aware of and working to resolve this encoding issue.||All||184.108.40.206||Fixed|
|Patch My PC tries to publish to Intune even if it is not configured, returning a message in the log similar to "Syncing: %3CEnterTenantDomainHere%3E..."||220.127.116.11||18.104.22.168||Fixed|
|Pause does not account for postponed binaries. If there is an exist postponed binary it will publish even if a pause is set.||22.214.171.124||126.96.36.199||Fixed|
|Scriptrunner may fail to find the uninstall string in the registry for some products.||188.8.131.52||184.108.40.206||Fixed|
|Scriptrunner may fail to validate an installation after the installer completes causing a 3 minute delay after installation completes.||220.127.116.11||18.104.22.168||Fixed|
|Version will not be appended to retained ConfigMgr applications when 'Update existing application's metadata...' is set||22.214.171.124||126.96.36.199||Fixed|