7 votes

PS4 5.05 BPF Double Free Kernel Exploit Writeup

2 comments

  1. [2]
    talklittle
    Link
    In practice, what could one do with this? Is this useful for malware (probably not widespread since it sounds like you'd need physical access to the PS4 to install the exploit)? Piracy? Homebrew...

    In practice, what could one do with this? Is this useful for malware (probably not widespread since it sounds like you'd need physical access to the PS4 to install the exploit)? Piracy? Homebrew apps?

    The writeup mentions that you can execute code in ring0. Does that mean someone could overwrite the OS with their own OS? What about gaining root privileges in the built-in OS and installing arbitrary FreeBSD processes alongside the existing ones?

    2 votes
    1. IdiocyInAction
      Link Parent
      Well, once you're in Ring0, you should be able to set up all the stuff you mentioned, i.e. jailbreaks, homebrew, circumventing copy protection. Malware seems very unrealistic for the PS4.

      Well, once you're in Ring0, you should be able to set up all the stuff you mentioned, i.e. jailbreaks, homebrew, circumventing copy protection. Malware seems very unrealistic for the PS4.

      3 votes