Join Us and become a Member for a Verified Badge to access private areas with the latest PS4 PKGs.
PS4 Jailbreaking       Thread starter PSXHAX       Start date Jul 14, 2018 at 1:56 AM       20      
Status
Not open for further replies.
As he did with the 4.05 Kernel Exploit and 4.55 WebKit Exploit, following the initial announcement and 5.05 Kernel Exploit release PlayStation 4 developer @SpecterDev has now made available via Twitter a writeup documenting his PS4 5.05 Kernel Exploit for others to examine and learn from. :notworthy:

To quote from the PS4 5.05 BPF Double Free Kernel Exploit Writeup.md on Github, in part: Conclusion

Another cool bug to exploit. It should have been a trivial exploit, however Sony's new mitigation that prevents exploit devs from pivoting RSP into userland memory while in kernel context is quite effective, and some tricks had to be used to get the chain into kernel memory - but as demonstrated, it is beatable.

This exploit is also a good example of how double free()'s can be exploited fairly easily on FreeBSD if they're on an object of decent size.

Credits
Additional Thanks
  • TheFloW - Suggestions and Feedback
References
PS4 5.05 Kernel Exploit Writeup Documentation by SpecterDev.jpg
 

Comments

The only jailbreakable FWs are 4.05, 4.55 and 5.05. You need to be on one of those to be able to jailbreak. You can only upgrade , you cannot downgrade. So if you're on 4.07, your only 2 options are 4.55 and 5.05, it is recommended to go for 5.05 because it is the latest and most supported right now.
 
Status
Not open for further replies.
Back
Top