Microsoft just released an emergency patch for the PrintNightmare vulnerability. Here are the links to download KB5004945 offline installer.
This Patch Tuesday, Microsoft released an emergency security patch for Windows 10 v21H1, 20H2, and v2004 users. The exploit is named “PrintNightmare,” and it is being actively exploited. i.e., attackers are actively using the vulnerability to compromise Windows 10 computers. The vulnerability affects all the Windows 10 versions. As such, Microsoft released multiple updates of the same patch for different Windows 10 versions.
According to Microsoft, the PrintNightmare vulnerability is a remote code execution exploit found in the Windows Print Spooler service and causes improper file execution with System privileges. An attacker can run any code with System privileges, install programs, and add, delete, or modify data in your computer on successful exploitation. You can learn more about the vulnerability from here.
As you can see, the vulnerability is pretty serious. Considering the seriousness of the exploit and being actively exploited in the wild, you must install the KB5004945 update as soon as possible to stay safe and secure.
Like always, Windows 10 should automatically install the update as soon as it is available to your system. If you cannot wait for the update to arrive or if the automatic updates are not working, you can certainly download the KB5004945 offline installer and install it manually. The offline installer is also useful to install the update on an offline computer. You will find the KB5004945 offline installer download links below.
Download KB5004945 offline installer
Use the links below to download KB5004945 offline installer from the Microsoft catalog website.
For v21H1:
KB5004945 x86 (32-bit) offline installer (download size: 270.9 MB)
KB5004945 x64 (64-bit) offline installer (download size: 586.1 MB)
For v20H2:
KB5004945 x86 (32-bit) offline installer (download size: 270.9 MB)
KB5004945 x64 (64-bit) offline installer (download size: 586.1 MB)
If you want KB5004945 download links for Windows Server, ARM64 based systems, or some other version, then go to the Microsoft update catalog website to find the appropriate links. All you have to do is click on the Download button next to the appropriate version.
KB5004945 changelog
Addresses a remote code execution exploit in the Windows Print Spooler service, known as “PrintNightmare”, as documented in CVE-2021-34527. After installing this and later Windows updates, users who are not administrators can only install signed print drivers to a print server. By default, administrators can install signed and unsigned printer drivers to a print server. The installed root certificates in the system’s Trusted Root Certification Authorities trusts signed drivers. Microsoft recommends that you immediately install this update on all supported Windows client and server operating system, starting with devices that currently host the print server role. You also have the option to configure the RestrictDriverInstallationToAdministrators registry setting to prevent non-administrators from installing signed printer drivers on a print server.
That is it.