Microsoft disclosed two remote code execution vulnerabilities in the Windows Line Printer Daemon (LPD) Service, tracked as CVE-2024-38199 and CVE-2025-21224, through its Security Update Guide. Both advisories identify the same Windows printing-related network service as the affected component, indicating repeated security exposure in software that can be reachable over the network in environments where LPD is enabled.
The disclosures show that organizations running Windows systems with the LPD Service enabled should review Microsoft’s updates for both CVEs and assess whether the legacy print protocol is necessary in their environment. Because the flaws allow remote code execution, affected hosts could face compromise if the service is exposed to untrusted networks, making patching, service hardening, and disabling unused LPD functionality key defensive actions.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft published CVE-2025-21224 in its Security Update Guide, identifying another remote code execution vulnerability in the Windows Line Printer Daemon (LPD) Service.
Microsoft added CVE-2024-38199 to its Security Update Guide as a remote code execution vulnerability affecting the Windows Line Printer Daemon (LPD) Service.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.