CVE-2016-4749
published 2016-09-18CVE-2016-4749: Printing UIKit in Apple iOS before 10 mishandles environment variables, which allows local users to discover cleartext AirPrint preview content by reading a…
PriorityP48low3.3CVSS 3.0
AVLACLPRLUINSUCLINAN
EPSS
0.32%
24.3th percentile
Printing UIKit in Apple iOS before 10 mishandles environment variables, which allows local users to discover cleartext AirPrint preview content by reading a temporary file.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | <= 9.3.5 | — |
CVSS provenance
nvdv3.03.3LOWCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9848-6q28-92jw: Printing UIKit in Apple iOS before 10 mishandles environment variables, which allows local users to discover cleartext AirPrint preview content by rea
ghsa_unreviewed·2022-05-17
CVE-2016-4749 [LOW] CWE-200 GHSA-9848-6q28-92jw: Printing UIKit in Apple iOS before 10 mishandles environment variables, which allows local users to discover cleartext AirPrint preview content by rea
Printing UIKit in Apple iOS before 10 mishandles environment variables, which allows local users to discover cleartext AirPrint preview content by reading a temporary file.
Apple
CVE-2016-4749: iOS 10
vendor_apple·2016-09-13·CVSS 3.3
CVE-2016-4749 [LOW] CVE-2016-4749: iOS 10
Apple Security Update: About the security content of iOS 10
Product: iOS
Version: 10
CVE: CVE-2016-4749
Component: Printing UIKit
Impact: An unencrypted document may be written to a temporary file when using AirPrint preview
Description: An issue existed in AirPrint preview. This was addressed through improved environment sanitization.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce/2016/Sep/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/Sep/msg00008.htmlhttp://www.securityfocus.com/bid/92932http://www.securitytracker.com/id/1036797https://support.apple.com/HT207143http://lists.apple.com/archives/security-announce/2016/Sep/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/Sep/msg00008.htmlhttp://www.securityfocus.com/bid/92932http://www.securitytracker.com/id/1036797https://support.apple.com/HT207143
2016-09-18
Published