Multiple Privilege Escalation Vulnerabilities in Arturia Software Center MacOS

https://sec-consult.com/vulnerability-lab/advisory/multiple-privilege-escalation-vulnerabilities-in-arturia-software-center-macos/

This would be worth fixing…

4 Likes

I agree!

At least, Arturia needs to be transparent about this.

Hello.

I agree. We do have received a report of this kind a year ago (not on the 2.12.0 version as it wasn’t released at the time) and we do have fixed the vulnerability that was targeted.
We will obviously fix this one too as soon as possible.

They sent an email to info@arturia.com which is probably not monitored in house (I didn’t even know it exist).
So we clearly missed the notification, and I’m sorry we did.

I can only thanks you for reporting it.
I’ll make sure to have it fixed as soon as possible.

Cheers !

4 Likes

“The vendor was unresponsive and did not respond to any of our communication attempts. Therefore, a patch is not available. In case you are using this product, please approach the vendor and demand a fix.”

The list above it with multiple tries to get into contact using multiple mail addresses without any sort of reply is pretty damning.