Plex Media Server: Incorrect resource transfer — GLSA 202509-05

A vulnerability has been discovered in Plex Media Server.

Affected packages

media-tv/plex-media-server on all architectures
Affected versions < 1.42.1.10060
Unaffected versions >= 1.42.1.10060

Background

Plex media server is a media library that is intended for use with a plex client.

Description

A vulnerability has been discovered in glibc. Please review the CVE identifier referenced below for details.

Impact

Please review the referenced CVE identifier for details.

Workaround

There is no known workaround at this time.

Resolution

All Plex Media Server users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose ">=media-tv/plex-media-server-1.42.1.10060"
 

References

Release date
September 17, 2025

Latest revision
September 17, 2025: 1

Severity
high

Exploitable
remote

Bugzilla entries