4.40 DEX: Difference between revisions

From PS3 Developer wiki
Jump to navigation Jump to search
 
(5 intermediate revisions by 2 users not shown)
Line 5: Line 5:


= Changes in LV2 Kernel since 4.31 DEX =
= Changes in LV2 Kernel since 4.31 DEX =
* _sys_prx_register_module
* _sys_prx_register_module <- vulnerable
* sys_rsx_context_allocate (0 vs 3 copyout)
* sys_rsx_context_allocate (0 vs 3 copyout) // ALL 3 are OUTPUT
* sys_rsx_device_map (0 vs 1 copyout)
* sys_rsx_device_map (0 vs 1 copyout) // OUTPUT
* sys_rsx_memory_allocate (0 vs 2 copyout)
* sys_rsx_memory_allocate (0 vs 2 copyout) // OUTPUT
* sys_net_write_dump (deprecated)
* sys_net_write_dump (deprecated)
* sys_net_bnet_select  
* sys_net_bnet_select  
Line 15: Line 15:
* sys_fs_newfs  
* sys_fs_newfs  
* sys_ss_~utoken_if
* sys_ss_~utoken_if
* sys_ss_media_id
* sys_ss_media_id (???)
* sys_storage_get_region_offset
* sys_storage_get_region_offset (0 vs 1 copyout)
* sys_storage_get_region_acl
* sys_storage_get_region_acl (0 vs 2 copyout)


= Download =
= Download =

Latest revision as of 17:43, 12 May 2018

Do *NOT* install this on a converted machine
It will result in the machine not allowing you to finish installing the update or even a brick.

There is a check on eid0(!) in lv1ldr, that will trigger a panic (fun fact: it's impossible to generate the checked data yourself, so no Cex2Dex without ugly patches anymore). See also: X-I-5-Passphrase

You can only recover from this with a hardware flasher

Changes[edit | edit source]

...

Changes in LV2 Kernel since 4.31 DEX[edit | edit source]

  • _sys_prx_register_module <- vulnerable
  • sys_rsx_context_allocate (0 vs 3 copyout) // ALL 3 are OUTPUT
  • sys_rsx_device_map (0 vs 1 copyout) // OUTPUT
  • sys_rsx_memory_allocate (0 vs 2 copyout) // OUTPUT
  • sys_net_write_dump (deprecated)
  • sys_net_bnet_select
  • sys_fs_test
  • sys_fs_mount
  • sys_fs_newfs
  • sys_ss_~utoken_if
  • sys_ss_media_id (???)
  • sys_storage_get_region_offset (0 vs 1 copyout)
  • sys_storage_get_region_acl (0 vs 2 copyout)

Download[edit | edit source]

PUP Hashes[edit | edit source]

MD5::EAD6354ECE7440DD6870E79517B7E1EE | SHA1::9E304C2BA2027C8329CCCD594994DE681229127E | CRC32::108BFC04 | CRC16::2A0D | HMAC_SHA1::0x4AD7963D66A9CA2044C3A4CB2A1D1224BF7AEC11

Pup Information[edit | edit source]

PUP file information
Package version: 1
Image version: 99999
File count: 9
Header length: 656
Data length: 188871799
PUP file hash : 4AD7963D66A9CA2044C3A4CB2A1D1224BF7AEC11
        File 0
        Entry id: 0x100
        Filename : version.txt
        Data offset: 0x290
        Data length: 5
File hash : D873D1B2ED0989D160F930F3E693F60A38484305
        File 1
        Entry id: 0x101
        Filename : license.xml
        Data offset: 0x295
        Data length: 308970
File hash : 5003EBF1548E8F002545561B74BBF5C470EE92C7
        File 2
        Entry id: 0x103
        Filename : update_flags.txt
        Data offset: 0x4B97F
        Data length: 5
File hash : 65A0A6DA7FDB7F7A93C50F2439F6D5FE4C55AF74
        File 3
        Entry id: 0x200
        Filename : ps3swu.self
        Data offset: 0x4B984
        Data length: 5669568
File hash : C671E863F8E552B160F105B963477D28B68D5A6D
        File 4
        Entry id: 0x201
        Filename : vsh.tar
        Data offset: 0x5B3C44
        Data length: 10240
File hash : D9B66E0D2845D71A67D76E7907AB06368CE61E08
        File 5
        Entry id: 0x202
        Filename : dots.txt
        Data offset: 0x5B6444
        Data length: 3
File hash : 1AA4749D0EE0D0AE937FBF73BC4B9ACD352F732A
        File 6
        Entry id: 0x300
        Filename : update_files.tar
        Data offset: 0x5B6447
        Data length: 177141760
File hash : 9B911642791F3317C3C0F234254E39A39448565E
        File 7
        Entry id: 0x501
        Filename : spkg_hdr.tar
        Data offset: 0xAEA5C47
        Data length: 71680
File hash : FAC4695F4B15313246D12C62DBD1F0A455096047
        File 8
        Entry id: 0x601
        Filename : ps3swu2.self
        Data offset: 0xAEB7447
        Data length: 5669568
File hash : 26F6B9399B81939AC6E698D3622998312EF59260