PATCH WATCH By Susan Bradley Don’t roll out Windows 11 24H2 yet. Defer. Delay. Wait. Most importantly, I always say wait, even if it’s just about mont
[See the full post at: Preparing for 24H2]
Susan Bradley Patch Lady/Prudent patcher
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
Home » Forums » Newsletter and Homepage topics » Preparing for 24H2
Tags: cups CVE-2024-47076 CVE-2024-47175 CVE-2024-47176 CVE-2024-47177 iOS 18 Linux Printing Microsoft Surface Newsletters Patch Lady Posts Port 631 Recall Snapdragon X Elite Windows 11 24H2 Windows Hello
PATCH WATCH By Susan Bradley Don’t roll out Windows 11 24H2 yet. Defer. Delay. Wait. Most importantly, I always say wait, even if it’s just about mont
[See the full post at: Preparing for 24H2]
Susan Bradley Patch Lady/Prudent patcher
Re. Linux CUPS vulnerabilities:
Patched by Ubuntu:
https://www.omgubuntu.co.uk/2024/09/ubuntu-secuity-fix-cups-vulnerability
Other Linux distros to follow. Debian patches available now.
My Linux Mint 21 and LMDE 6 have been patched automatically.
Closing Port 631 could prevent CUPS from accessing networked printers. Maybe that’s exactly the point of the workaround.
See also AskWoody Forum posts following #2706767.
-- rc primak
I’m running Ubuntu 24.04 in WSL, and it’s fully updated.
For most folks I agree @sb , but I can so easily and quickly (1 min) backup and restore my system that I took the chance (with the Rufus version!!!) and all went well. Yes, it is a BIG release, with a LOT of updates to the iso(as part of the install), but, so far, no updates to the system (WuMgr), and so far no probs (thinkorswim and etc).
But I am on a fairly new mobo and can easily bail(Terabyte Image!). If you are on an older mobo, or can’t bail quickly, I would totally agree and say wait a bit.
Edition Windows 11 Pro
Version 24H2
Installed on Sat 10/5/2024
OS build 26100.1742
Experience Windows Feature Experience Pack 1000.26100.18.0
Windows is my only driver these days, and, finally, liking win 11.
Interesting thing about the CUPS service, specifically cups-browsed… Why would some vendors decide to turn cups-browsed on by default? Might the plan to have been to enable it for several years prior to exploiting it? Not knowingly by the vendors, per se. Moreover, some long-term social engineering, like had been done with “xz”. So it would it be seen as benign, until it wasn’t? Was the long term game plan to get all major distros to enable cups-browsed by default?
I’m thinking back to the “xz utilities” in Linux that were appropriated by a “helpful” third-party from the original author. And subsequently used to attempt to usurp control of SSH via a backdoor.
Or does that delay security updates which InControl allows?
InControl controls feature updates(new versions) not security updates.
If you are running Pro version there is no need for pause. Just set ‘Notify=2’.
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.
Notifications