home
sony

Sony BMG Litigation Information (provided by the Electronic Frontier Foundation)

Update: Claim your settlement from Sony BMG (offsite link)

» FAQ on the Sony BMG settlement
» Jump to legal documents and links

By including a flawed and overreaching computer program in millions of music CDs sold to the public, Sony BMG has created serious security, privacy and consumer protection problems that have damaged music lovers everywhere.

At issue are two software technologies - SunnComm's MediaMax and First4Internet's Extended Copy Protection (also known as XCP) - which Sony BMG claims to have placed on the music CDs to restrict consumer use of the music on the CDs but which in truth do much more, including reporting customer listening of the CDs and installing undisclosed and in some cases hidden files on users' computers that can expose users to malicious attacks by third parties, all without appropriate notice and consent from purchasers. The CDs also condition use of the music on unconscionable licensing terms in the End User Licensing Agreement (EULA).

After a series of embarrassing public revelations about security risks associated with the XCP software, including warnings issued by the United States Government, Microsoft and leading anti-virus companies, Sony BMG has taken some steps to respond to the security risks created by the XCP technology. Sony BMG has failed, however, to address security concerns raised by the MediaMax software or the consumer privacy and consumer fairness problems created by both technologies.

Background

Problems with XCP
Security researchers have shown that the XCP technology was designed to have many of the qualities of a "rootkit." It was written with the intent of concealing its presence and operation from the owner of the computer, and once installed, it degrades the performance of the machine, opens new security vulnerabilities, and installs updates through an Internet connection to Sony BMG's servers. The nature of a rootkit makes it extremely difficult to remove, often leaving reformatting the computer's hard drive as the only solution. When Sony BMG offered a program to uninstall the dangerous XCP software, researchers found that the installer itself opened even more security vulnerabilities in users' machines.

Problems with MediaMax
The MediaMax software, which is included on over 20 million Sony BMG CDs, has different, but similarly troubling problems. It installs on the users' computers even if they click "no" on the EULA, and does not include a way to uninstall the program. The security issue involves a file folder installed on users' computers by the MediaMax software that could allow malicious third parties who have localized, lower-privilege access to gain control over a consumer's computer running the Windows operating system. The software also transmits data about users to SunnComm through an Internet connection whenever purchasers listen to CDs, allowing the company to track listening habits -- even though the EULA states that the software will not be used to collect personal information and SunnComm's website says "no information is ever collected about you our your computer."

EFF's Open Letter
On November 14, 2005, EFF wrote an Open Letter to Sony BMG, asking the company to publicly commit to fixing the problems it has caused for its music fans and take steps to reassure the public that its future CDs will respect its customers' ownership of their computer. Among the make-good measures recommended by EFF: a recall of all XCP and SunnComm MediaMax-infected CDs, from both consumers and store shelves; a guarantee to repair, replace, or refund the purchase price of the CDs to anyone who bought the merchandise; and a major publicity campaign warning about the security risks of XCP and SunnComm MediaMax. EFF also asked Sony BMG to pay all consumer costs associated with the damage caused by the XCP or SunnComm MediaMax technology and compensate people for the time, effort, and expense required to verify that their computer was or was not infected with the rootkit.

Sony BMG's Response
Initially Sony BMG denied there was a problem, saying the the XCP rootkit "component is not malicious and does not compromise security." Thomas Hesse, President of Sony BMG's global digital business division, asked in an interview for a National Public Radio "Most people, I think, don't even know what a rootkit is, so why should they care about it?"

After receiving harsh public criticism and EFF's Open Letter, Sony BMG took strong steps in acknowledging the security harm caused by the XCP CDs, including a recall of the infected discs. However, these measures still fall short of what the company needs to do to fix the problems caused to customers by XCP, including both privacy problems and fixing its outrageous EULA. See Sony BMG's November 18, 2005, written response to EFF's Open Letter here [PDF].

Critically, Sony BMG has still refused to refund the cost of CDs to consumers or even widely publicize its recall program using its powerful marketing abilities, or to compensate consumers whose computers have been affected. And, Sony has not agreed to eliminate the outrageous terms found in their EULA.

Moreover, Sony BMG has failed to fully respond to concerns about MediaMax, which affects over twenty million CDs — ten times the number of CDs as the XCP software. While Sony responded quickly and responsibly when we drew their attention to a security problem with MediaMax version 5, there remain unresolved issues which EFF will continue to raise with Sony BMG.

Settlement

FAQ on SunnComm MediaMax

EFF's Open Letter

Legal Documents

EFF Blog Posts - DeepLinks

Press Releases

 

 

CDs Included in the Settlement

If you purchased your CD from a music club, your UPC number may differ from the number listed.
Artist Title UPC
40 Below Summer The Mourning After 79301828982
A Static Lullaby Faso Latido 827969277225 or D161263
Acceptance Phantoms 696998901629 or D161429
Alicia Keys Unplugged 82876674242 or 82876731662 or D165215
Amerie Touch 827969076323 or D161365
Amici Forever Defined 82876688832 or D161495
Angie Stone Stone Love 82876562152 or D153051
Anthoney Hamilton Coming From Where I'm From 82876521072 or D150669
Art Blakey Drum Suit 827969363720 or D162083
Babyface Grown & Sexy 82876705682 or D162090
Backstreet Boys Never Gone 82876696112 or D165187
Backstreet Boys Never Gone (Target) 82876705342
Backstreet Boys Never Gone (Walmart) 82876702442
The Bad Plus Suspicious Activity? 827969474020
Bette Midler Sings the Peggy Lee Songbook 827969510728 or 828767481524
Black Rebel Motorcycle Club Howl 8287671601 or D162369
Bob Brookmeyer Bob Brookmeyer & Friends 827969429228 or D162087
Britney Spears Hitme - Remix 82876740622
Buddy Jewell Times Like These 827969287323 or D161532
Burt Bacharach At This Time 827969773420
Cassidy I'm A Hustla 82876687072 or 82876680732
Celine Dion On Ne Change Pas 827969773628
Charlie Wilson Charlie, Last Name Wilson 82876694292 or D162168
Charlotte Martin On Your Shore 82876606762
Chayanne Cautivo 037629681921 or 37629681822 or 37629588626
The Chieftains Live From Dublin 82876671372 or D160913
Chris Botti To Love Again 827969482322
Chris Brown Chris Brown 82876733222
Citizen Cope Clarance Greenwood Recordings 82876521142 or D154185
Clay Aiken Merry Christmas 82876626222 or D161935
Cook, Dixon & Young Volume One 82876673342 or D162089
The Coral The Invisible Invasion 827969474723
Cyndi Lauper The Body Acoustic 827969456927
Dave Matthews Band Stand Up 82876687962 or D165167
David Gray Life In Slow Motion 82876710682 or D165217
The Dead 60's The Dead 60's 827969445327
Deniece Williams This Is Niecy 827969381427
Dextor Gordon Manhattan Symphonie 827969358122 or D162084
Dido Dido Live 82876658099
Dido "White Flag" W/Enhanced Features (Maxi Single) 82876603552-0
Dion The Essential Dion 827969267028 or D161439
Earl Scruggs I Saw The Light With Some Help From My Friends 827969279328 or D162399
Elkland Golden 827969203620 or D161431
Emma Roberts Unfabulous And More: Emma Roberts 827969395028 or 827969768426
Faithless Forever Faithless/ENH 82876710142 or D162102
Flatt & Scruggs Foggy Mountain Jamboree 827969280126 or D162400
Foo Fighters In Your Honor (Bb Version) 82876705282
Foo Fighters In Your Honor 82876680382 or D265002
G3 Live In Tokyo 827969768525
George Jones My Very Special Guests 827969256220 or D200250
Gerry Mulligan Jeru 074646549827 or D162086
Horace Silver Silver's Blue 827969385623 or D162082
Imogen Heap Speak For Yourself 82876725322
Jane Monheit The Season 827969772126
Jim Brickman Grace 82876679792 or D161456
Jim Brickman Grace (Provident Version) 82876687952
J-Kwon Hood Hop (Edited) 82876583672
J-Kwon Hood Hop (Ex) 82876576132 or D152470
Jon Randall Walking Among The Living 827969208328
Judd & Maggie Subjects 82876692492 or D161949
Kasabian Kasabian 82876664282 or D161062
Keith Anderson Three Chord Country 82876662942 or D161674
Kings Of Leon Aha Shake Heartbreak 82876645442 or D160912
Leo Kottke/Mike Gordon Sixty Six Steps 82876689092
Life Of Agony Broken Valley 827969351529 or D161228
Maroon 5 Live 82876709742 or 82876699522 or D200606
Mary Mary Mary Mary 000768353721 or 827969294826 or D162005
Montgomery Gentry Something To Be Proud Of: The Best of 1999-2005 828767532424 or 827969498224
My Morning Jacket Z 82876710672
Natasha Bedingfield Unwritten 827969398821 or D162095
Neil Diamond 12 Songs 827969477625 or 827969781128
Nivea Complicated 828766715620 or D161353
Nodesha Get It While It's Hot (Maxi Single) 82876566902
Our Lady Peace Healthy In Paranoid Times 827969477724
Patty Loveless Dreamin' My Dreams 827969448120
Pete Seeger The Essential Pete Seeger 827969283523 or D161441
Raheem Devaughn The Love Experience 82876537232 or D161600
Ray Charles Friendship 827969456422 or D161917
Rosanne Cash Interiors 827969365526
Rosanne Cash King's Record Shop 696998699427
Rosanne Cash Seven Year Ache 696998699724
Sahara Hotnights Kiss & Tell 82876626892 or D153473
Santana All That I Am 82876597732 or D165199
Sarah McLachlan "Fallen" W/Enhanced Features (Maxi Single) 82876601432
Sarah McLachlan Afterglow Live 82876644942 or D260346
Sarah McLachlan Afterglow Live 82876645432
Sarah McLachlan Bloom (Remix Album) 82876697982 or D162345
Shel Silverstein The Best Of Shel Silverstein 827969472224 or D162100
Shelly Fairchild Ride 827969035528 or D161531
Silvertide Show & Tell 82876644022
Silvertide Show & Tell (Ex) 82876609892 or D154573
Soundtrack Xxx: State Of The Union 82876679222 or D161437
Soundtrack Xxx: State Of The Union 82876681092
Stellastarr* Harmonies for the Haunted 82876688812 or D162194
Susie Suh Susie Suh 827969244326 or D161094
Switchfoot Nothing Is Sound 827969653425 or 827969643723 or 827969458129
Syleena Johnson Chapter 3: The Flesh 82876610932 or D162447
Teena Marie Robbery 827969381724
Tha' Rayne Didn't You Know (Maxi Single) 82876566882
T-Pain Rappa Ternt Sanga 82876734472 or 82876732002
Trey Anastasio Shine 827969642825
Van Zant Get Right With The Man 827969350027 or D161459
Various So Amazing: An All Star Tribute To Luther Vandross 82876624722
Various Songs Brown Hotel 82876714112
Various Relaxation: A Windham Hill Collection 82876629422
Velvet Revolver Contraband (Bb Version) 82876665102
Velvet Revolver Contraband (Ed) 82876605242
Velvet Revolver Contraband (Ex) 82876597942 or D153163
Vivian Green Vivian 827969076125 or D161824
Wakefield Which Side Are You On? 82876685072 or 82876681352 or D161648
YoungBloodZ Everybody Know Me 82876733402 or 82876731752
Yung Wun The Dirtest Thir(Ex) 82876607672 or D154246
Yung Wun The Dirtiest Thirstiest 82876609492


Class action filed against AT&T for allegedly acting as NSA's agent in domestic spying. See the Amended Complaint.

Sony Agrees To Stop Putting Unwanted DRM Software on music CD's. We are pleased to report that in working with the Electronic Frontier Foundation ("EFF"), Sony/BMG has agreed to settle a class action over the placement of digital rights management software on it's music CD's by stopping the practice, repalcing the CD's and compensating those who purchased the CD's. The EFF has a help page and resources concerning the settlement. Claim Forms are due by December 31, 2006. If you would like to submit a Claim Form online, please click here. If you have played a CD on your computer that contains either XCP or MediaMax 5.0 content protection software, you shouldupdate or uninstall the software to reduce your risk of security vulnerabilities.

Los Angeles court rules AT&T arbitration clause is not a part of the contract with consumers. The trial on whether the coverage maps of AT&T Wireless (now Cingular) are deceptive has been delayed as defendants now are seeking to compel arbitration after 7 years of litigation.

Bait and Switch Complaint filed against Dell  To view the complaint filed in federal court seeking nationwide class action status for bait and switch tactics click here.

Illegal Advertising of Internet Gambling Suit filed against Search Engines  To view the complaint filed in state court seeking to stop sponsored ads of internet gambling to be displayed by Google, Yahoo and other search engines click here.

Proposals to Revise ND Cal Local Rules. Changes being discussed for handling securities fraud class actions. Click here to view.

Today's Securities Surprises

ReedKathrein.com Copyright © 2005 by Reed R. Kathrein. All rights reserved.

Sitemap .