Skip to main content

Microsoft warns Windows users of another unpatched printing vulnerability

Microsoft might have patched PrintNightmare in Windows, but for the second time this month, there’s yet another printer-themed vulnerability in the wild.

Just detailed is a new vulnerability in the Windows Print Spooler service that could allow hackers to install programs; view, change, or delete data; and create new accounts on your PC.

Recommended Videos

Though that might sound scary, it is important to note that to leverage this new vulnerability, hackers will need to execute code on a victim system. Basically, it means that a hacker would need physical access to your PC. Microsoft mentions this in the support guide for the new vulnerability, going by the name of CVE-2021-34481.

Please enable Javascript to view this content

It is there where Microsoft labels the vulnerability with a score of 7.8 and “important” severity, meaning it is a high-security risk. However, Microsoft does also mention that though CVE-2021-34481 was made public, it hasn’t been exploited — though another note details exploitation is “more likely.”

A printer sitting on a desk by a window.
Image used with permission by copyright holder

Microsoft hasn’t yet mentioned when a patch for this new vulnerability will be released. Instead, the company says it is investigating and “developing a security update.” Importantly, Microsoft points out that this new issue wasn’t caused by the July 2021 security update, which initially patched PrintNightmare.

Still worried? There is a temporary workaround for those who might be concerned. The workaround involves opening Powershell on Windows and determining if the Print Spooler Service is running, then stopping and disabling the service. The downside of this workaround is that stopping and disabling the Print Spooler service disables the ability to print both locally and remotely.

The last time, Microsoft was quick to release a patch for PrintNightmare. It happened within four days of Microsoft first discovering the issue. It’s unknown if a similar patch for this exploit could come at a similar time. Seeing as though the situation is a little less urgent, with hackers needing local access to a PC, it could be a while.

Microsoft credited the security researcher Jacob Baines for discovering this issue and reporting it to Microsoft. Baines notes on his Twitter page that he doesn’t believe this new vulnerability to be a variant of PrintNightmare.

Arif Bacchus
Arif Bacchus is a native New Yorker and a fan of all things technology. Arif works as a freelance writer at Digital Trends…
Windows 11 compatibility waiver warns of ‘damages’ that Microsoft could prevent
Unsupported Windows 11 waiver.

The Windows 11 launch is right around the corner. Devices featuring the new operating system are set to launch on October 5, and Microsoft is offering Insiders the opportunity to download and use the OS now.

If you have an unsupported processor, though, you'll need to sign a waiver accepting any possible "damages" to your PC -- but the real risk is the lack of updates.

Read more
Microsoft warns select Windows 11 beta testers to move back to Windows 10 now
Laptop screen featuring a Windows update screen.

Microsoft is sending a warning out to those who managed to beta test Windows 11 on unsupported hardware. It is now time to go back to Windows 10, as your device is no longer eligible to join the Windows Insider program on Windows 11.

While the message might seem shocking, it is actually a long time in the making. When Microsoft first announced Windows 11 in June, they had allowed all Windows Insiders who were already testing previous Windows 10 builds to beta test the operating system. It was intended as a "limited exception" thank-you gift to the Windows fans, but now that an official October 5 Windows 11 release date has been announced, Microsoft is ready to move on.

Read more
Microsoft fixes Windows 11 PC Health Check app, extends processor compatibility
Laptop sitting on a desk showing Windows 11's built-in Microsoft Teams experience.

A few months after the Windows 11 PC Health Check app was taken offline, Microsoft is ready to bring it back. This time around, the company has made some significant changes to the experience, to ensure that the app provides more clarity and accuracy in deciding if a Windows PC can run Microsoft's latest Windows 11 operating system.

Now in testing first with Windows Insiders, and rolling out to everyone in the coming weeks, the biggest change has to do with the eligibility check function. Microsoft says that the PC Health Check app now has more complete and improved messaging on eligibility for Windows 11, with links to supporting articles on remediation steps, including information on firmware TPM.

Read more