CVE-2021-36947: Windows Print Spooler Remote Code Execution Vulnerability
Windows Print Spooler Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20094Patch KB5005106 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.23435Patch KB5005094 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.25685Patch KB5005089 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21192Patch KB5005095 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20094Patch KB5005076 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.4583Patch KB5005043 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19022Patch KB5005040 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.1165Patch KB5005033 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19041.1165Patch KB5005033 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.1165Patch KB5005033 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.18363.1734Patch KB5005031 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.2114Patch KB5005030
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2021-36947?
CVE-2021-36947 is a Windows Print Spooler Remote Code Execution Vulnerability.
What is the severity of CVE-2021-36947?
CVE-2021-36947 has a severity rating of 8.8 (high).
Which software versions are affected by CVE-2021-36947?
CVE-2021-36947 affects Microsoft Windows 10 (all versions), Windows 7 SP1, Windows 8.1, Windows RT 8.1, Windows Server 2008 SP2, Windows Server 2008 R2 SP1, Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019.
How does CVE-2021-36947 work?
CVE-2021-36947 allows remote code execution by exploiting the Windows Print Spooler service.
Is there a fix available for CVE-2021-36947?
Yes, Microsoft has released a security advisory for CVE-2021-36947 with guidance on how to mitigate the vulnerability.