Plex has notified some of its users on Thursday to urgently update their media servers due to a recently patched security vulnerability.

The company has yet to assign a CVE-ID to track the flaw and didn’t provide additional details regarding the patch, only saying that it impacts Plex Media Server versions 1.41.7.x to 1.42.0.x.

    • rumba@lemmy.zip
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      https://torrentfreak.com/plex-will-block-media-servers-at-prevalent-hosting-company-230915/

      There’s the story but there’s not much tea.

      I’m guessing there were just enough complaints and Hetzner refused to take anything down.

      Really bizarre to license people self-hosting software and then refuse them from hosting it in certain places over what content they choose to put up.

      I wonder if they’ll just roll through all the VPS now.

    • katy ✨@piefed.blahaj.zone
      link
      fedilink
      English
      arrow-up
      0
      ·
      2 days ago

      i’m ootl; how was plex able to ban them? isn’t hetzner just a vps provider? (not questioning you; just curious)

        • Kogasa@programming.dev
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 day ago

          I’ve been using a reverse proxy on a Hetzner VPS pointing at my home plex server for years without issue. Maybe this only applies to people running the actual Plex software on a Hetzner VPS?

          • Darkassassin07@lemmy.ca
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            1 day ago

            Yeah, your home server is still able to reach plex.tv so there’s no problem there.

            It’s people actually hosting there that got screwed over.

          • Derpgon@programming.dev
            link
            fedilink
            English
            arrow-up
            2
            ·
            2 days ago

            That’s what you get for using anything that doesn’t work fully offline. Seriously people still defending Plex and not seeing that it will bite them back sooner or later are delusional.

            Given that hardware doesn’t die, my Jellyfin will probably work until the heat death of the universe.