bootloader unlock vulnerability? - Honor 8 Questions & Answers

i found something about CVE-2017-8215,
Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have a permission control vulnerability. An attacker with the system privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader.
we can unlock without unlock code?

Related

Updating a C432

Just recently bought this phone, and after scouring this forums the past few days I found that the EMUI that shipped with my phone is 4-5 months old (Dec '16) and that there have been multiple updates since, even though the OTA on my phone says I'm using the latest version. This scares me, not so much for features, but because of potentially missing security patches.
Looking at hwmt.ru's listings, there's a lot of updates, and for my specific model the latest OTA is B181, and the latest "full" update (I assume these are whole images) is B156.
Can I download the B156 updates (basically the same way used when rooting the phone) to update the stock ROM?
And if that is correct, what are all the listings on that site under the "A" (or "Тип") column with "OTA" for?
Download the firmware finder app for android and update through it: https://forum.xda-developers.com/tools/general/huawei-firmware-finder-team-mt-t3469146
You probably won't be able to update to 181 though... You'll have to test which ones you can install. Huawei needs to approve each firmware version before we can install through system update.
B181 didn't work, authentication error, gonna try the other way and work my way up instead.
Nice that someone made a tool to automate this though, even though it's a hacky way
Nevermind that, every single version gets that authentication error, even the ones older than the one I have currently installed.

[Discussion] Rollback package for various models

Hi Folks,
Seeing around various section of all the models when users are struggling to restore their phone either due the flashing an incorrect firmware or after updating via Firmware Finder app and then wanting to rollback to earlier version of EMUI. They sometime cannot even flash the custom ROMs due to FRP lock or unable to flash the custom recovery and even after trying all the known methods, we struggle to restore their phone as they messed up badly with their phone and model or version change to something unexpected.
In this thread, lets discuss and share about rollback files available for various models (be it MM, Lollipop anything) so that new users could use it to restore to their original version and then update to official versions.

[Discussion] Rollback package for various models

Hi Folks,
Seeing around various section of all the models when users are struggling to restore their phone either due the flashing an incorrect firmware or after updating via Firmware Finder app and then wanting to rollback to earlier version of EMUI. They sometime cannot even flash the custom ROMs due to FRP lock or unable to flash the custom recovery and even after trying all the known methods, we struggle to restore their phone as they messed up badly with their phone and model or version change to something unexpected.
In this thread, lets discuss and share about rollback files available for various models (be it MM, Lollipop anything) so that new users could use it to restore to their original version and then update to official versions.

Bootloader and root for ASUS_Z01GS version (OPR1.170623.032.WW_Phone-15.0410.1803.51)

I just bought a new Zenfone 4 Pro (much cheaper than the 5Z and better than the other 5s).
It's an ASUS_Z01GS, not an ASUS_Z01DS, which is strange, since all the support sites have firmware with Z01DG in the filenames.
Its firmware version is OPR1.170623.032.WW_Phone-15.0410.1803.51 (that's the one it came with) and there are no OTA updates.
Its Android version is 8.0.0.
I have tried using ASUS's official unlock tool to enable bootloader (v 9.1.0.0 and 9.1.0.3), however, both failed.
I've tried various rooting utils (TunesGo, KingRoot, KingoRoot), however, these failed too.
Is there anyway to root this phone (the GS model with the firmware I have).
Thanks.

Unable to update device to latest version

Hello,
Im running a rooted with the latest magisk EU version OP 8T android 12
My current build numer is KB2003_11_C.21, and ever since updating to this version (using the Exogen updater) ive havent been able to update to any of the versions that came after C21. Ive tried version C33 and kept getting a failed message and now C35 and same issue. (https://community.oneplus.com/thread?id=1181365)
I've used every option shown here https://www.makeuseof.com/update-oxygenos-manually/ and all of them fails.
I see this issue with many other users since versions C20/21.
Thank you in advance
saar17 said:
Hello,
Im running a rooted with the latest magisk EU version OP 8T android 12
My current build numer is KB2003_11_C.21, and ever since updating to this version (using the Exogen updater) ive havent been able to update to any of the versions that came after C21. Ive tried version C33 and kept getting a failed message and now C35 and same issue. (https://community.oneplus.com/thread?id=1181365)
I've used every option shown here https://www.makeuseof.com/update-oxygenos-manually/ and all of them fails.
I see this issue with many other users since versions C20/21.
Thank you in advance
Click to expand...
Click to collapse
Look at this thread for how to update properly if you have root.
[GUIDE] Root and keeping root options
Update 230526: Correct numbering of "B.1.1 Simple" to "B.1.2 Simple", use "OOS 13+" instead of "OOS 13" as OOS 13.1 is now available A. First time rooting This process is common across all options A.1 Flashing Magisk patched boot image There...
forum.xda-developers.com

Categories

Resources