Ce mail provient de l'extérieur, restons vigilants

=====================================================================

                            CERT-Renater

                Note d'Information No. 2025/VULN527
_____________________________________________________________________

DATE                : 19/08/2025

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Systems running Plex Media Server versions prior
                                  to 1.42.1.10060.

=====================================================================
https://forums.plex.tv/t/plex-media-server/30447/687
https://forums.plex.tv/t/plex-media-server-security-update/928341
_____________________________________________________________________


Plex Media Server 1.42.1.10060 is now available to everyone.

NEW:

    (Metadata) Support for Icelandic for Movie and TV show libraries
(PM-2328)

    (Preferences) Added pref for downloads temp directory (PM-3560)
    (Preferences) Added preference for number of simultaneous
background transcodes, including downloads (PM-3724)

FIXES:

    (Collections) Adding tracks to a collection overwrites the disc
number field (PM-2605)
    (Collections) The collection item count subtitle for smart
collections could be inaccurate for collections with limits (PM-2742)
    (EPG) Using the Browse option for LiveTV EPG results in
an error (PM-3698)
    (Editions) Filmography listing don’t return movies which only
exist as specific editions (PM-3698)
    (First Run) Initial setup can fail with ‘Core Component’ error
(PM-3918)
    (Library) Photo libraries would show legacy photo agent as
selectable option (PM-675)
    (Preferences) Improve descriptions for episode and album sorting
preferences (PM-3563)
    (Voice Activity Detection) Scheduled tasks could try to run
items which have already been processed (PM-724)
    (Security) Address potential vulnerability. More details:
https://forums.plex.tv/t/pms-release-update/928341 (PM-3915)

_____________________________________________________________________


We recently received a report via our bug bounty program that there
was a potential security issue affecting PMS versions 1.41.7.x to
1.42.0.x. Thanks to that user, we were able to address the issue and
continue to improve our security and defenses.

We strongly recommend that everyone have their PMS updated to the
most recent version as soon as possible, if you have not already
done so.

The new version, 1.42.1, is now available to update through the PMS
management page or you can download it here:
https://www.plex.tv/media-server-downloads/

=========================================================
+ CERT-RENATER        |    tel : 01-53-94-20-44         +
+ 23/25 Rue Daviel    |    fax : 01-53-94-20-41         +
+ 75013 Paris         |   email:cert@support.renater.fr +
=========================================================
