CNNVD-202602-107 Information

CNNVD ID

CNNVD-202602-107

CVE-2026-24071

  • CNNVD Published: 2026-02-02

Description (Chinese)

Native Instruments Native Access是德国Native Instruments公司的一个一站式设备管理中心。 Native Instruments Native Access存在安全漏洞,该漏洞源于特权助手XPC服务使用客户端PID验证代码签名,可能被PID重用攻击利用。

Description (English)

Native Industries Native Access is a one-stop equipment management centre for the German company Native Industries. There is a security loophole in the Native Industries Native Access, which stems from the use of the client PID to verify the signature of the Privileged Assistant XPC service, which could be reused by PID.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Native Instruments

Published

2026-02-02

Last Modified

2026-02-24

References

https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-in-native-instruments-native-access-macos/ https://access.redhat.com/security/cve/cve-2026-24071

Share on: