
PrintNightmare 인쇄 스풀러 취약점(CVE-2021-34527 및 CVE-2021-1675)을 완화하기 위해 ACL(액세스 제어 목록)을 백업, 복원 및 조정하는 PowerShell 및 배치 스크립트를 제공합니다.
현재 Microsoft의 해결책 없음 (2021년 7월 2일 기준)
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34527
모든 운영 체제 버전(서버 및 클라이언트)에 영향
가능한 조치
ACL 조정이 현재 가장 유망한 해결책입니다.
POWERSHELL과 BATCH/CMD 두 가지 스크립트가 있으며, 배치 버전은
모든 ACL의 백업/복원이 쉽다는 장점이 있습니다.
https://github.com/LaresLLC/CVE-2021-1675
https://doublepulsar.com/zero-day-for-every-supported-windows-os-version-in-the-wild-printnightmare-b3fdb82f840c
https://blog.truesec.com/2021/06/30/fix-for-printnightmare-cve-2021-1675-exploit-to-keep-your-print-servers-running-while-a-patch-is-not-available/
독일어 기사
https://www.borncity.com/blog/2021/07/02/windows-print-spooler-schwachstelle-cve-2021-1675-printnightmare-von-ms-besttigt-cisa-warnt/
https://www.heise.de/news/Jetzt-handeln-Angreifer-nutzen-die-Drucker-Luecke-in-Windows-bereits-aus-6127265.html