Microsoft has released an out-of-band Windows 10 update KB5004945 for versions 21H1, 20H2 and 2004. The update with Build 19043.1083, 19042.1083, 19041.1083 brings fix for the PrintNightmare exploit reported by Microsoft earlier.

Highlights:

  • Updates a remote code execution exploit in the Windows Print Spooler service, known as “PrintNightmare”, as documented in CVE-2021-34527.

Check the full changelog below.

This security update includes quality improvements. Key changes include:

  • Addresses a remote code execution exploit in the Windows Print Spooler service, known as “PrintNightmare”, as documented in CVE-2021-34527. After installing this and later Windows updates, users who are not administrators can only install signed print drivers to a print server. By default, administrators can install signed and unsigned printer drivers to a print server. The installed root certificates in the system’s Trusted Root Certification Authorities trusts signed drivers. Microsoft recommends that you immediately install this update on all supported Windows client and server operating system, starting with devices that currently host the print server role. You also have the option to configure the RestrictDriverInstallationToAdministrators registry setting to prevent non-administrators from installing signed printer drivers on a print server. For more information, see KB5005010.

KB5004945 download link:

You can manually download this update by clicking here. If you need help in understanding how to install these updates manually on your PC, you can refer to our step by step noob-friendly tutorial.