Guru3D.com
  • HOME
  • NEWS
    • Channels
    • Archive
  • DOWNLOADS
    • New Downloads
    • Categories
    • Archive
  • GAME REVIEWS
  • ARTICLES
    • Rig of the Month
    • Join ROTM
    • PC Buyers Guide
    • Guru3D VGA Charts
    • Editorials
    • Dated content
  • HARDWARE REVIEWS
    • Videocards
    • Processors
    • Audio
    • Motherboards
    • Memory and Flash
    • SSD Storage
    • Chassis
    • Media Players
    • Power Supply
    • Laptop and Mobile
    • Smartphone
    • Networking
    • Keyboard Mouse
    • Cooling
    • Search articles
    • Knowledgebase
    • More Categories
  • FORUMS
  • NEWSLETTER
  • CONTACT

New Reviews
Corsair H170i Elite Capellix XT review
Forspoken: PC performance graphics benchmarks
ASRock Z790 Taichi review
The Callisto Protocol: PC graphics benchmarks
G.Skill TridentZ 5 RGB 6800 MHz CL34 DDR5 review
Be Quiet! Dark Power 13 - 1000W PSU Review
Palit GeForce RTX 4080 GamingPRO OC review
Core i9 13900K DDR5 7200 MHz (+memory scaling) review
Seasonic Prime Titanium TX-1300 (1300W PSU) review
F1 2022: PC graphics performance benchmark review

New Downloads
FurMark Download v1.33.0.0
Intel ARC graphics Driver Download Version: 31.0.101.4091
Corsair Utility Engine Download (iCUE) Download v4.33.138
CPU-Z download v2.04
AMD Radeon Software Adrenalin 23.1.2 (RX 7900) download
GeForce 528.24 WHQL driver download
Display Driver Uninstaller Download version 18.0.6.0
Download Intel network driver package 27.8
ReShade download v5.6.0
Media Player Classic - Home Cinema v2.0.0 Download


New Forum Topics
Sony Bravia fix will be included in the driver after next. Intel Lowers ARC A750 Pricing towards $250, adds bundle and claim driver fine wine Philips 27-inch 4K OLED Gaming Monitor DisplayHDR TrueBlack 400 (27E1N8900/27) NVIDIA GeForce 528.24 WHQL driver download & Discussion High temperatures on AIB 7900XTX New Details Emerge on AMDs A620 Chipset: What We Know So Far Forspoken Benchmark Test & Performance Analysis Review Microsoft Now Is Proactively Informing Windows 10 users to update to Windows 11 NVIDIA GeForce 528.50 Vulkan BETA driver download & Discussion RTX 4090 Owner's thread




Guru3D.com » News » Microsoft warns about new vulnerability "PrintNightmare"

Microsoft warns about new vulnerability "PrintNightmare"

by Hilbert Hagedoorn on: 07/05/2021 09:28 AM | source: | 13 comment(s)
Microsoft warns about new vulnerability

In the Windows print queue (from Windows 7 on) is a vulnrebility to be found, Microsoft alerts users about the CVE-2021-34527 vulnerability called "PrintNightmare". it enables attackers to execute code on their machine remotely. This vulnerability can lead to a problem.

The vulnerability has been there for some years, but nothing was known until this week, when a Research Group released a kit on Github on how to exploit the weakness, assuming that it had been addressed earlier in June when Microsoft corrected another Windows Spool issue. The researchers believed that it was PrintNightmare, and because they thought it had been addressed before, they showed how to use it, but it turns out that it wasn't corrected and that millions of machines have now been exposed to severe safety problems.

Solving it

Since the vulnerability is present in multiple versions of Windows and has not yet been patched, Microsoft made certain recommendations to users to restrict access to the spooler service:

  • If you don't have a printer: Disable the "Print queue" service.
  • If you have a printer: Go to "Edit Group Policies", select "Computer Configuration", select "Administrative Templates", select "Printers", and disable the option "Allow the print job manager to accept client connections"






« MSI Launches MAG CH130 Series Gaming Chair (water-resistant) · Microsoft warns about new vulnerability "PrintNightmare" · Edge of Eternity will feature both DLSS and FidelityFX Super Resolution »

Related Stories

Microsoft looking at graphics machine learning development, potential DLSS equivalent? - 07/05/2021 09:04 AM
Microsoft is seeking a software developer in the segment of machine learning to enhance the computing power of graphics from current consoles....

Advertorial: Great Microsoft Windows 10 Pro Deal with URcdkey - 07/02/2021 08:10 AM
Nowadays, many users often continue to use unlicensed software. But this is a rather controversial way of saving. And now we are talking not so much about its illegality as about the danger of all k...

Microsoft removes application to verify Windows 11 requirements - relaxes requirements - 06/29/2021 04:51 PM
Earlier on, we reported a handy tool that verifies if your PC is compatible with the new Windows 11, which was short-lived as Microsoft removed it after several failures in the detection mechanism....

Microsoft Releases First Windows 11 Insider Preview Build - 06/29/2021 08:48 AM
Things are moving fast with Windows 11 now, two weeks ago we did not even know of its existence, today Microsoft released the first official Windows 11 Insider Preview. With this beta, developers and ...

Microsoft removes mandatory >1TB storage requirement for DirectStorage NVMe SSDs - 06/29/2021 08:37 AM
DirectStorage initially had a requirement of volume size, that value was 1TB, which now seems to have been changed. ...


3 pages 1 2 3


David Lake
Senior Member



Posts: 756
Joined: 2008-03-03

#5926842 Posted on: 07/05/2021 02:14 PM
Its "Print Spooler" on 7.

schmidtbag
Senior Member



Posts: 7163
Joined: 2012-11-10

#5926860 Posted on: 07/05/2021 03:57 PM
How has MS not figured out yet that the reason their OS has always been plagued with security issues is because they keep opening up access to everything?

dragonlord
Senior Member



Posts: 211
Joined: 2005-02-17

#5926879 Posted on: 07/05/2021 05:40 PM
My understanding is that end users who have patched via WIndows Update in June are already protected/mitigated from this. The current issue is with businesses running Active Directory and so that will be patched soon. Meanwhile, there are mitigation workarounds to address this for business IT admins.

Please correct me if I am wrong about this.

tsunami231
Senior Member



Posts: 13380
Joined: 2003-05-24

#5926881 Posted on: 07/05/2021 05:48 PM
printer spool service? i have had that "manual" for decades i only turn it on when I actual need to print something, and I almost never do that. which manybe 3 times year? if that and i turn right off after doing so. I knew there was reason why I turn off printer spool

kakiharaFRS
Senior Member



Posts: 952
Joined: 2015-11-21

#5926882 Posted on: 07/05/2021 05:48 PM
another printer/spooler thing exploit wasn't that already a problem like 10 years ago (quick search found me 2010-2012-2013 already...)
edit: thx tsunami completely forgot to do it when I installed my current pc from scratch

3 pages 1 2 3


Post New Comment
Click here to post a comment for this news story on the message forum.


Guru3D.com © 2023