The latest IE patching conundrum deals with a bug in the June patches that broke the ability to print in iFrames. Automatic Update flops between one c
[See the full post at: More June security patching bugs: You can patch an IE security hole, or print inside iFrames – but not both]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
More June security patching bugs: You can patch an IE security hole, or print inside iFrames – but not both
Home » Forums » Newsletter and Homepage topics » More June security patching bugs: You can patch an IE security hole, or print inside iFrames – but not both
- This topic has 27 replies, 13 voices, and was last updated 7 years, 9 months ago.
Tags: KB 4021558 KB 4022714 KB 4022715 KB 4022716 KB 4022719 KB 4022724 KB 4022725 KB 4022726 KB 4022727
AuthorTopicwoody
ManagerJuly 19, 2017 at 1:21 pm #125585Viewing 9 reply threadsAuthorReplies-
ViperJohn
AskWoody LoungerJuly 19, 2017 at 3:51 pm #125598Well we will try this again. The Internet Explorer iFrame print bug the was introduced in Junes:
Cumulative security update KB4021558 for Internet Explorer 11
or
Monthly rollup 4022726 for Windows 8.1 and Windows Server 2012 R2
or
Monthly rollup 4022719 for Windows 7 SP1 and Server 2008 RS SP1WAS CORRECTED In:
Update for Internet Explorer 11 for Windows x.x systems KB4032782 released 06/27/2017.
Uodate Catalog Page:
http://catalog.update.microsoft.com/v7/site/Search.aspx?q=%20%20KB4032782
Viper
-
woody
ManagerJuly 19, 2017 at 5:31 pm #125619The Internet Explorer iFrame print bug the was introduced in…
As well as 4022724, 4022727, 4022714, 4022715, and 4022725, yes?
WAS CORRECTED In: Update for Internet Explorer 11 for Windows x.x systems KB4032782 released 06/27/2017.
As mentioned in the article, it WAS corrected – first on June 22, then on June 27 – but in the process of correcting the bug, 4032782 removes the protection for CVE-2017-8529.
Right?
1 user thanked author for this post.
-
AJNorth
AskWoody Plusch100
AskWoody_MVPJuly 19, 2017 at 4:15 pm #125606Very balanced article with a very good review of the recent updating events for multiple operating systems.
Somehow difficult to follow even for those of us “in the know”, I am wondering what would other less informed readers think, especially those who are not among our frequent posters or readers here… 🙂1 user thanked author for this post.
-
Oldster
AskWoody LoungerJuly 20, 2017 at 1:35 pm #125741cf100 wrote in #125606….Very balanced article with a very good review of the recent updating events for multiple operating systems. Somehow difficult to follow even for those of us “in the know”, I am wondering what would other less informed readers think, especially those who are not among our frequent posters or readers here… 🙂
Well I am one of your less informed readers and have been following this forum since September 2016. This is my first post. I have diligently followed all the Group B recommendations and I can say without reservation and with grateful thanks to you all that without the help provided by all the experts here I would have been totally lost.
But right now this latest debacle with IE patching has me extremely confused. I waited until July 7th to install the June recommended security patches including KB4021558. Now I find it has a double vulnerability with an either/or solution provided. Not being able to print from IE is a non issue for me as I never use it. Firefox is my go to browser.
My primary focus is on keeping my Windows 7 Home Premium 64-bit SP1 HP laptop as secure as possible but I have no idea what steps I should take now. It will soon be time to install the July security patches once the Defcon number reaches 3 and this old guy needs some clear direction and soon. I hope someone here has the answer for me. Thanks all.
-
woody
Manager
-
ViperJohn
AskWoody LoungerJuly 19, 2017 at 4:39 pm #125615Swell. But, since I rarely use IE (Win 7 Pro x64), except for the very few sites that do not render correctly in Firefox, I’ll take KB4025252 for $300 (and hope that it’s not the Monthly Double Whammy).
You would apply KB4032782 to correct the Oops’es Microsoft stuffed into the June updates for IE then apply July’s KB4025252 Cumulative Security Update for Internet Explorer as you normally would to get your IE security up to date.
Note that if you do not do a backup Disk Image before updating you should probably wait for a change to DEFCON 3 (but still keep your fingers crosssd) considering Microsoft track record of bad updates lately.
Viper
-
MrBrian
AskWoody_MVP
ViperJohn
AskWoody LoungerJuly 19, 2017 at 6:01 pm #125623Swell. But, since I rarely use IE (Win 7 Pro x64), except for the very few sites that do not render correctly in Firefox, I’ll take KB4025252 for $300 (and hope that it’s not the Monthly Double Whammy).
You would apply KB4032782 to correct the Oops’es Microsoft stuffed into the June updates for IE then apply July’s KB4025252 Cumulative Security Update for Internet Explorer as you normally would to get your IE security up to date. Note that if you do not do a backup Disk Image before updating you should probably wait for a change to DEFCON 3 (but still keep your fingers crossed) considering Microsoft track record of bad updates lately. Viper
Hmmmm … It looks like July’s KB4025252 Cumulative Security Update for Internet Explorer DOES NOT contain a patch to protect against CVE-2017-8529 | Microsoft Browser Information Disclosure Vulnerability
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8529
at the very bottom of the page:
4.2 07/11/2017 Please note that the protection for CVE-2017-8529 is not yet available with the release of the July security updates, as we continue to work on a solution for the known issue customers may experience when printing from Internet Explorer or Microsoft Edge after installing Internet Explorer Cumulative update 4021558. Customers who receive automatic updates will not be protected from this CVE. Microsoft is continuing to investigate a solution for this known issue and will notify customers as soon as an update is available.
samak
AskWoody PlusJuly 19, 2017 at 9:27 pm #125635So if nothing changes between now and when the DEFCON changes to “go ahead”, Group B can avoid the security hole by not installing July’s IE11 update (assuming no updates have been applied since the main June updates) but Group A will automatically get the security hole reinstated. Have I understood this latest MS triumph correctly ?
Windows 10 Home 22H2, Acer Aspire TC-1660 desktop + LibreOffice, non-techie
1 user thanked author for this post.
-
MrBrian
AskWoody_MVP -
samak
AskWoody PlusJuly 19, 2017 at 9:55 pm #125640Ha ha, this is a good game! So now we have to make a judgement call about whether it is better to have June’s vulnerabilities or July’s. What fun!
Windows 10 Home 22H2, Acer Aspire TC-1660 desktop + LibreOffice, non-techie
-
AJNorth
AskWoody PlusJuly 19, 2017 at 11:50 pm #125653Who’s on first?
(As mentioned in another thread some months back, for those not familiar with the reference, see http://www.baseball-almanac.com/humor4.shtml . After all, as Neils Bohr once said, “Some subjects are so serious that one can only joke about them.” — As quoted in “The Genius of Science: A Portrait Gallery,” 2000, by Abraham Pais, p. 24.)
-
-
alpha128
AskWoody PlusJuly 20, 2017 at 5:29 pm #125782I’ve been in Group A since the beginning.
But someone I’ve been helping navigate through the Group B hoops is now seriously considering switching to Group A because of this IE printing problem.
To permanently switch to Group A, and get the IE print bug fix, would a Group B Windows 7 user simply install July 11, 2017—KB4025341 (Monthly Rollup)?
Would they need to uninstall Cumulative security update for Internet Explorer: June 13, 2017 first?
Please let me know and I’ll pass along your advise. Thanks.
MrBrian
AskWoody_MVPJames Bond 007
AskWoody LoungerJuly 20, 2017 at 9:49 pm #125819As a person who intends on staying with Group B, I don’t have the June IE update KB4021558 installed on my computers. It seems to me after reading through that if I now install the KB4025252 July IE update, then that particular security hole is still not patched, but I will also not have the iFrame bug. Is that correct?
Hope for the best. Prepare for the worst.
GoneToPlaid
AskWoody LoungerJuly 22, 2017 at 11:51 am #126029A “heads up” for you all…
Just because you don’t use IE and instead you use another web browser, this does NOT necessarily mean that IE is not silently running as a hidden window on your computer. It has been several months since I encountered this issue on one of my Win7 laptop computers. I recall that somehow several instances of the infamous KB2952664 update were found to be installed on that particular computer even though several months ago I had uninstalled what I thought was just one installed instance of KB2952664.
I discovered this issue on this particular Win7 laptop computer after cancelling my contract with LoJack and then uninstalling the LoJack software. I incorrectly assumed that LoJack, incorporated into my Win7 laptop’s BIOS, was what was creating a hidden instance of IE every time I rebooted my computer. It was CCleaner which constantly reported that IE had to be closed before CCleaner could then perform its cleaning operations. I always had to tell CCleaner to force the closing of IE so that CCleaner could perform its cleaning operations. After cleaning, IE always magically restarted as a process which had no visible window.
I wrote a batch file which detected all installed instances of KB2952664 and which then uninstalled all installed instances of KB2952664. There were several installed versions which were sequentially uninstalled.
After rebooting this Win7 laptop computer, I then verified that there no longer were any running yet hidden instances of IE.
So there you have it. If you are on Group A and have KB2952664 installed and even if you don’t launch IE, I bet that Task Manager will show that iexplorer.exe is running every time after you reboot your computer. A running instance of IE is a running instance of IE — regardless of whether or not IE’s window is hidden. A running instance of IE exposes your computer to this vulnerability unless you install the IE patch which fixes this vulnerability yet does not fix the issue of printing inline frames.
-
Kirsty
ManagerJuly 22, 2017 at 3:27 pm #126043@ch100 recently confirmed that where IE11 has been uninstalled AND where IE8 has been deselected (unenabled) on a Win7 machine, the computer will be hiding IE7 as the “working version” (he also mentions other WinOS, for those interested).
-
anonymous
GuestJuly 25, 2017 at 2:36 pm #126365So the question remains, one that i’ve not seen asked anywhere, is what happens when microsoft end support for IE? Since it can’t technically be removed completely we’ll be left with a gaping security hole that is no longer patched. So you can either choose to have an insecure default version or an insecure newest version. Unless microsoft release a patch that somehow neuters IE completely.
-T
-
anonymous
GuestJuly 27, 2017 at 8:07 am #126608Just for clarification…
I applied the KB4021558 update, which protects against CVE-2017-8529.
I did not apply the KB4032782 fix to correct the print bug. This means I am still protected again CVE-2017-8529.
I applied KB4025252. Where does that leave me as far as the print bug AND the protection against CVE-2017-8529?
Viewing 9 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
CISA mutes own website, shifts routine cyber alerts to X, RSS, email
by
Nibbled To Death By Ducks
8 minutes ago -
Apple releases 18.5
by
Susan Bradley
27 minutes ago -
Fedora Linux 40 will go end of life for updates and support on 2025-05-13.
by
Alex5723
1 hour, 34 minutes ago -
How a new type of AI is helping police skirt facial recognition bans
by
Alex5723
2 hours, 12 minutes ago -
Windows 7 ISO /Windows 10 ISO
by
ECWS
9 hours, 8 minutes ago -
No HP software folders
by
fpefpe
9 hours, 53 minutes ago -
Which antivirus apps and VPNs are the most secure in 2025?
by
B. Livingston
2 hours, 5 minutes ago -
Stay connected anywhere
by
Peter Deegan
15 hours, 15 minutes ago -
Copilot, under the table
by
Will Fastie
6 hours, 29 minutes ago -
The Windows experience
by
Will Fastie
21 hours, 30 minutes ago -
A tale of two operating systems
by
Susan Bradley
12 hours, 26 minutes ago -
Microsoft : Resolving Blue Screen errors in Windows
by
Alex5723
1 day, 2 hours ago -
Where’s the cache today?
by
Up2you2
1 day, 18 hours ago -
Ascension says recent data breach affects over 430,000 patients
by
Nibbled To Death By Ducks
1 day, 10 hours ago -
Nintendo Switch 2 has a remote killing switch
by
Alex5723
11 hours, 15 minutes ago -
Blocking Search (on task bar) from going to web
by
HenryW
1 day, 18 hours ago -
Windows 10: Microsoft 365 Apps will be supported up to Oct. 10 2028
by
Alex5723
2 days, 11 hours ago -
Add or Remove “Ask Copilot” Context Menu in Windows 11 and 10
by
Alex5723
2 days, 11 hours ago -
regarding april update and may update
by
heybengbeng
2 days, 13 hours ago -
MS Passkey
by
pmruzicka
1 day, 14 hours ago -
Can’t make Opera my default browser
by
bmeacham
2 days, 20 hours ago -
*Some settings are managed by your organization
by
rlowe44
2 days, 7 hours ago -
Formatting of “Forward”ed e-mails
by
Scott Mills
2 days, 19 hours ago -
SmartSwitch PC Updates will only be supported through the MS Store Going Forward
by
PL1
3 days, 15 hours ago -
CISA warns of hackers targeting critical oil infrastructure
by
Nibbled To Death By Ducks
4 days ago -
AI slop
by
Susan Bradley
1 day, 18 hours ago -
Chrome : Using AI with Enhanced Protection mode
by
Alex5723
4 days, 1 hour ago -
Two blank icons
by
CR2
1 day, 9 hours ago -
Documents, Pictures, Desktop on OneDrive in Windows 11
by
ThePhoenix
1 day, 11 hours ago -
End of 10
by
Alex5723
4 days, 13 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.