CVE-2021-36958: Windows Print Spooler Remote Code Execution Vulnerability
A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Other sources
Windows Print Spooler Remote Code Execution Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.23462Patch KB5005607 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.25712Patch KB5005615 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21218Patch KB5005618 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20120Patch KB5005627 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20120Patch KB5005613 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.4651Patch KB5005573 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19060Patch KB5005569 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.1237Patch KB5005565 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19041.1237Patch KB5005565 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.1237Patch KB5005565 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.18363.1801Patch KB5005566 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.2183Patch KB5005568
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-36958?
CVE-2021-36958 is rated as critical due to its potential for remote code execution with SYSTEM privileges.
How do I fix CVE-2021-36958?
To mitigate CVE-2021-36958, ensure that you apply the latest security updates provided by Microsoft for Windows.
What systems are affected by CVE-2021-36958?
CVE-2021-36958 affects multiple versions of the Microsoft Windows operating system that have the Print Spooler service enabled.
What type of attacks can exploit CVE-2021-36958?
CVE-2021-36958 can be exploited by attackers to run arbitrary code, potentially leading to system compromise.
How can I check if CVE-2021-36958 has been addressed on my system?
You can verify if CVE-2021-36958 has been mitigated by checking for the installation of the latest security patches from Microsoft.