thewayne: (Default)
The Wayne ([personal profile] thewayne) wrote2021-07-07 10:26 am

If you run Windows 10, UPDATE YOUR COMPUTER RIGHT NOW!!!

There is a critical security bug that was discovered late yesterday called PrintNightmare in Windows' print spooler. It affects ALL versions of Windows!

Let me repeat that.

EVERY. FREAKING. VERSION. OF. WINDOWS.

Not just Windows 10.

Server.

7.

Vista.

And on down the line.

It allows the remote creation of privileged accounts, so even if you're not running as an admin user, the villains can create an admin account on your system.

If you're running Windows 10, there's a patch, and you should apply it toot sweet. If you're running an older version of Windows, there will be a patch soon, they're working on them. There is a stop-gap measure: disable the Print Spooler. You won't be able to print remotely, but you also won't be able to be compromised.

Read the comments on Krebs' post, since the patch was rushed out, it may be buggy. You might want to just disable the Print Spooler for now until a better patch can be created.

https://krebsonsecurity.com/2021/07/microsoft-issues-emergency-patch-for-windows-flaw/

https://gizmodo.com/printnightmare-windows-users-need-to-install-this-emer-1847243126
dauntless_heart: (calculating Chekov)

Thanks for the reminder on this!

[personal profile] dauntless_heart 2021-07-07 07:41 pm (UTC)(link)
I read about it this morning and then forgot. My machine is updating now!
bibliofile: Fan & papers in a stack (from my own photo) (Default)

Re: Thanks for the reminder on this!

[personal profile] bibliofile 2021-07-07 10:19 pm (UTC)(link)
Me too. THanks for the reminder.
dewline: Text - "On the DEWLine" (Default)

[personal profile] dewline 2021-07-07 07:42 pm (UTC)(link)
Okay, thanks for this. At least one person I know is running an older version of Windows, and while they don't do remote printing at all - that I know of - I think they'll appreciate the heads-up.
dewline: Text - "On the DEWLine" (Default)

[personal profile] dewline 2021-07-07 07:47 pm (UTC)(link)
Well, we'll still have to wait for the patch for this particular Windows version.
moonhare: (Default)

[personal profile] moonhare 2021-07-08 04:38 pm (UTC)(link)
I started updating this morning... damn, but I hate windows updates. Four of the five computers I worked on finally complied after lagging downloads and installs and multiple restarts, but there was that one that went south. And what a great time to find I didn't have that particular one backed up... one that had multiple customizations and peripherals. This will take most of tomorrow's shift for me to bring back online.


At least I had the main business pc here copied, even if it didn't go down.

moonhare: (Default)

[personal profile] moonhare 2021-07-08 06:00 pm (UTC)(link)
First, I noticed DeepFreeze didn’t reinstall properly. And I couldn’t get the computer to respond from the server. DF wouldn’t even open on the pc. I couldn’t get a command box to open until I went to safe mode and a scannow told me multiple errors were repaired… but to no avail. Windows was collapsing on itself! In the end I saved my ‘thawspace’ files and tomorrow will reimage with the dusty 1909 version OSL offers, and proceed from there :D It is more fun than Circ work, at least, and unless the drive somehow got corrupted this will just be a drawn out success.

And I’ll back this (and the other desk computers) up!
moonhare: (Default)

[personal profile] moonhare 2021-07-09 11:45 pm (UTC)(link)
Postscript- I went in to work early today to download the IA file from OSL (turns out it is 20H2 after all), but when I boot up the misbehaving computer I find it isn’t misbehaving anymore. At all. So I open a command box in regular (not safe) mode, do another scannow (no errors), check and see all updates were successful yesterday, and go ahead and install DeepFreeze. Imagine…

silveradept: A kodama with a trombone. The trombone is playing music, even though it is held in a rest position (Default)

[personal profile] silveradept 2021-07-08 06:00 pm (UTC)(link)
Always so much fun for everyone when a bug appears like this, but thank you for bringing it to our attention. I'll get all the other machines in order and disable their printing ability until I'm sure this one's taken care of.