Poc expolit yet? - Samsung Galaxy A71 5G Questions & Answers

Just wondering, (I know a long shot) if anyone happen to find an exploit for root shell yet? Maybe even a poc exploit? Magisk able preferably. Yes root with bootloader locked. Been done on other phones, Xperia, lg v20 etc. Garbage how we are locked down. Even a full root with bootloader v6 (forced current) would be even better. I have only seen for v1. Tmobile snapdragon usa btw.

theres a new exploit 'dirtycred'! theres some good info here on it and WORKING ANDROID CODE (unreleased for now):
https://twitter.com/i/web/status/1544379506659663872
it appears like older kernels wont work with the exploit according to one of the devs.
I'm thinking to update my a71 5g phone with the latest one UI 4.1 update, but unsure of the kernel version included??
Can anyone please post what kernel versions come in the a71 5g updates? or, link me where i can find this? in all the update documentation, i dont see any kernel version info
also, i see there IS a "dirty pipe" (not dirtycred) exploit fix in the latest updates. i am unsure if this will also fix dirtycred or not, though i dont think it will

ballgum said:
theres a new exploit 'dirtycred'! theres some good info here on it and WORKING ANDROID CODE (unreleased for now):
https://twitter.com/i/web/status/1544379506659663872
it appears like older kernels wont work with the exploit according to one of the devs.
I'm thinking to update my a71 5g phone with the latest one UI 4.1 update, but unsure of the kernel version included??
Can anyone please post what kernel versions come in the a71 5g updates? or, link me where i can find this? in all the update documentation, i dont see any kernel version info
also, i see there IS a "dirty pipe" (not dirtycred) exploit fix in the latest updates. i am unsure if this will also fix dirtycred or not, though i dont think it will
Click to expand...
Click to collapse
I tried looking into dirtypipe but couldn't find much. Also wasn't sure if it would work for this A71 5g (Snapdragon). I personally haven't updated in a while so I am currently on kernel 4.19 UI 3.1 (date ASPL 11/1/21). This seems interesting non the less. Wonder what all is needed/how to do other then video. In case you are trying to find your version, it's under settings-then about phone-then software information.

So I just check another A71 5g Snapdragon that's has newest update and it's still 4.19

Mysticblaze347 said:
So I just check another A71 5g Snapdragon that's has newest update and it's still 4.19
Click to expand...
Click to collapse
damn! that sucks!! that means we wont be able to use these expoits i dont think. dirtypipe and dirtycred dont work on 4.19 i dont believe. i checked the source code for pipe, and it says at least 5.8 i think it was

Mysticblaze347 said:
So I just check another A71 5g Snapdragon that's has newest update and it's still 4.19
Click to expand...
Click to collapse
so you have a different a71 that is the most up to date on android 12? and android 12 still uses 4.19? ugh
you would think they would've included a kernel update in the OS updates from android 11 -> 12
guess not

Yeah, I checked my gf's cause hers forced updates to current, mine I paused an update awhile ago so it's locked until I unpause it. Phones now adays are just insane with lockdown. You would think it would have updated kernel as well, but maybe something for 4.19 will show...hopefully.

ballgum said:
so you have a different a71 that is the most up to date on android 12? and android 12 still uses 4.19? ugh
you would think they would've included a kernel update in the OS updates from android 11 -> 12
guess not
Click to expand...
Click to collapse
I wonder if any of these may be possible. 2021 I did see 4.19 ... https://github.com/bcoles/kernel-exploits
So the 2019 might be better for 4.19... https://github.com/bcoles/kernel-exploits/blob/master/CVE-2019-13272/poc.c

Related

Oreo final release might be close.

Spotted this on the Samsung fota cloud test server. It's version CQLJ which means it's not a beta version.
new fw is BRA+0-9/A-F (when build in 2018)
chrisjwild said:
Spotted this on the Samsung fota cloud test server. It's version CQLJ which means it's not a beta version.
Click to expand...
Click to collapse
CRA1 NOW. looks like they definitely working on final build
It's already taking too long...
amieldl143 said:
CRA1 NOW. looks like they definitely working on final build
Click to expand...
Click to collapse
Yes, for sure, I forgot about 7.1
Major OS 7.0 for S8 - A, 7.1 - B (skip for S8), 8.0 - C
R - 2018 year
A - January
0-9/A-F - build number
Knowing samsung if its released to some european country today it'll hit america in around a month, and canada in 2 months, then a month later the s9 is released... thanks samsung.
I wish Samsung would fix their update scheme. There is Android Fragmentation, then there is Android Samsung Fragmentation. Why is the Galaxy Tab A 2016 getting the January security update and my unlocked S8 is on November...
Also the latest Oreo Beta is on December, I know security updates are only small but as has been seen on the January update with the Pixels they can cause issues, so I would be sceptical to an Oreo release even being up to date.
Samsung needs to stop carriers turning their phones into bloated messes. My phone, before I debranded, came with 17 applications installed by the carrier, none of which I have any use for or have used!
It really isn't that hard to get this right, and it's what we are all asking for! Simplification and transparency, not waiting and waiting and waiting! Some customers with Note 8's in the UK are still on August Security Patch. That's what £800 gets you, negligence.
chrisjwild said:
Spotted this on the Samsung fota cloud test server. It's version CQLJ which means it's not a beta version.
Click to expand...
Click to collapse
May I ask for the link?
erniechan said:
May I ask for the link?
Click to expand...
Click to collapse
It's only a reference site so nothing to download from it.
http://fota-cloud-dn.ospserver.net/firmware/BTU/SM-G950F/version.test.xml
I just downloaded it from here (Snapdragon only!) : https://samsung.firmware.science/download?url=48927/1488/SS-G950USQS2BQL1-to-U2CRA1-UP
Boot into recovery and install update.zip.
I haven't flashed it yet as I don't want to lose root.
highaltitude said:
I just downloaded it from here (Snapdragon only!) : https://samsung.firmware.science/download?url=48927/1488/SS-G950USQS2BQL1-to-U2CRA1-UP
Boot into recovery and install update.zip.
I haven't flashed it yet as I don't want to lose root.
Click to expand...
Click to collapse
I tried to install BQL1 on my G9500, which is a Snapdragon model. But it shows secure check fail.
chrisjwild said:
It's only a reference site so nothing to download from it.
http://fota-cloud-dn.ospserver.net/firmware/BTU/SM-G950F/version.test.xml
Click to expand...
Click to collapse
Do you know if the version.xml (not version.test.XML) update in real-time? Thats mean, would I be able to see a new firmware when Samsung pushes a new update to my device?
I see they have jumped back to CRAB version from CRAL in the test server. Wonder if that is in prep for the release to beta testers.
highaltitude said:
I just downloaded it from here (Snapdragon only!) : https://samsung.firmware.science/download?url=48927/1488/SS-G950USQS2BQL1-to-U2CRA1-UP
Boot into recovery and install update.zip.
I haven't flashed it yet as I don't want to lose root.
Click to expand...
Click to collapse
Is this for the S8 950u ??
Joshua Mr PC Repair said:
Is this for the S8 950u ??
Click to expand...
Click to collapse
Yes. Check this out too. Upgrade from the firmware you are on. Select yourself. https://samsung.firmware.science
Beck up to CRAN now. Lol
And now to CRAP. It must be the final
Sent from my SM-G950F using Tapatalk
Just spotted that. I hope CRAP isn't a bad sign. Lol.
Whole set of Bixby got updated. Is that a sign to prepare the phone for an Oreo upgrade?

Overclock J330FN

Is there any custom kernel that can allow overclocking on the J330FN Oreo?
xda general said:
Is there any custom kernel that can allow overclocking on the J330FN Oreo?
Click to expand...
Click to collapse
Nope. It is highly unlikely that a custom kernel or even rom to be made for this device as no one is developing anything on it. The device has reached end of life considering it is a budget device after all.
thepcwiz101 said:
Nope. It is highly unlikely that a custom kernel or even rom to be made for this device as no one is developing anything on it. The device has reached end of life considering it is a budget device after all.
Click to expand...
Click to collapse
Ok thank you and there is actually one persom he goes by the name of ashynx he made it able to get root and twrp on oreo for this device he also made some custom roms for the nougat version of this device
xda general said:
Ok thank you and there is actually one person he goes by the name of ashynx he made it able to get root and twrp on oreo for this device he also made some custom roms for the nougat version of this device
Click to expand...
Click to collapse
No problem and i am aware since she helped make sampwned32 for the sm-j327t and sm-j327t1 I found the root method that was used on the s8 variant with a locked bootloader and brought it up and even tested the root method on the device and it worked. But a month later samsung released a new update that patched it. If it wasn't for ashyx converting the files from ARM64 to ARM this method would have never worked. Also after samsung patched the root method they only released one more security update and ended up cancelling the android oreo update for metropcs and tmobile after we was told our device would get it. Oh boy i was pretty pissed. Like come on samsung you could atleast unlock the device's bootloader and allow us to make our own custom roms which would be alot better and would be oreo based. It is sad how samsung forgot about us and didn't even bother to release a new phone to the metropcs and tmobile market in the budget area. The mid range J7 Prime got more love than this device did fr.
thepcwiz101 said:
No problem and i am aware since she helped make sampwned32 for the sm-j327t and sm-j327t1 I found the root method that was used on the s8 variant with a locked bootloader and brought it up and even tested the root method on the device and it worked. But a month later samsung released a new update that patched it. If it wasn't for ashyx converting the files from ARM64 to ARM this method would have never worked. Also after samsung patched the root method they only released one more security update and ended up cancelling the android oreo update for metropcs and tmobile after we was told our device would get it. Oh boy i was pretty pissed. Like come on samsung you could atleast unlock the device's bootloader and allow us to make our own custom roms which would be alot better and would be oreo based. It is sad how samsung forgot about us and didn't even bother to release a new phone to the metropcs and tmobile market in the budget area. The mid range J7 Prime got more love than this device did fr.
Click to expand...
Click to collapse
Yes it certainly did

Cross flash an Australian Telstra LG V50 LMV500EM to the European/Swiss/UK Android 10

Hello Everyone, have anyone able to cross flash an Australian Telstra LG V50 LMV500EM to the European/Swiss/UK Android 10 version
The model nos are identical but get the following error with the patched LG up tool
[/COLOR]
corepda said:
Hello Everyone, have anyone able to cross flash an Australian Telstra LG V50 LMV500EM to the European/Swiss/UK Android 10 version
The model nos are identical but get the following error with the patched LG up tool
Click to expand...
Click to collapse
we will have to wait for some good developer to unlock bootloader so as to allow you to install other firmware ... i have the v50 with lock sprint and it does not go in fastboot
I can unlock bootloader. Do you think that will help? This model is supported by lg for bootloader unlock. Thanks
corepda said:
I can unlock bootloader. Do you think that will help? This model is supported by lg for bootloader unlock. Thanks
Click to expand...
Click to collapse
If you enter FASTBOOT mode you are lucky
corepda said:
I can unlock bootloader. Do you think that will help? This model is supported by lg for bootloader unlock. Thanks
Click to expand...
Click to collapse
No, yours isnt. Only the EUROPEAN V500EMs are supported, not the ones from other regions. IMEI/Device ID isnt whitelisted for other regions to unlock. (but it will tell you that when you try).
Every V500EM can go to fastboot btw, or other open market variants, just the carrier variants cant. (but, with temp root/firehose thats possible todo then too)
SGCMarkus said:
No, yours isnt. Only the EUROPEAN V500EMs are supported, not the ones from other regions. IMEI/Device ID isnt whitelisted for other regions to unlock. (but it will tell you that when you try).
Every V500EM can go to fastboot btw, or other open market variants, just the carrier variants cant. (but, with temp root/firehose thats possible todo then too)
Click to expand...
Click to collapse
117/5000
Exactly ours are blocked by carriers and I have not found any procedure for unlocking ... do you have any ideas ???
spa1978 said:
117/5000
Exactly ours are blocked by carriers and I have not found any procedure for unlocking ... do you have any ideas ???
Click to expand...
Click to collapse
There isn't any. We have what we need, just waiting for a firehose to get it onto the device.
Gotta say, last time I'm getting an LG...
Hardware is great, software support is worse than Samsung, and that's saying something... At least with Samsung you can get the latest update as they supply a generic multi-region rom...
The worlds greatest hardware is pointless if the software isn't there to support it. Each iteration of Android brings greater things and here we are in Oz stuck on Android 9 with the October security patch... Pathetic....
I'm not even gonna start ranting about LG helpdesk, clueless idiots who sit there blowing smoke up your bum ...
ultramag69 said:
Gotta say, last time I'm getting an LG...
Hardware is great, software support is worse than Samsung, and that's saying something... At least with Samsung you can get the latest update as they supply a generic multi-region rom...
The worlds greatest hardware is pointless if the software isn't there to support it. Each iteration of Android brings greater things and here we are in Oz stuck on Android 9 with the October security patch... Pathetic....
I'm not even gonna start ranting about LG helpdesk, clueless idiots who sit there blowing smoke up your bum ...
Click to expand...
Click to collapse
Dude v50 and g8 all versions have received Android 10 by now. Latest update is April patch
antintin said:
Dude v50 and g8 all versions have received Android 10 by now. Latest update is April patch
Click to expand...
Click to collapse
I'm in Australia. Everytime I try to update it says I've got the latest firmware...
Whatever the rest of the world has, LG has pretty much dumped all support for us here, which is a shame as the features that have been hinted to us are awesome but alas unavailable to us Aussies...
So much for a flagship device....
Still on Android 9 with October 2018 security patch. And no update in sight...
ultramag69 said:
I'm in Australia. Everytime I try to update it says I've got the latest firmware...
Click to expand...
Click to collapse
Hm. Have you gone to lg-firmwares.com, put in your IMEI or just searched for Australian kdz?
antintin said:
Hm. Have you gone to lg-firmwares.com, put in your IMEI or just searched for Australian kdz?
Click to expand...
Click to collapse
Yes. The firmware fore Australia is
Australia
V500EM10c_00_0712.kdz Android 9 Pie 3.68 GiB 2019-09-26 18 time(s)
TEL
Australia
V500EM10d_00_1011.kdz Android 9 Pie 3.69 GiB 2019-12-05 15 time(s)
As you can see, LG has pretty much left us in the dirt here in Oz...
There are no other places still on Android 9. Most, if not ALL major OEM's have upgraded, if not all their devices, their flagship phones to Android 10...
If they aren't going to do it themselves, at least allow us to do so by producing a generic CSC specific ROM, like Samsung has...
As I say, my security patch is for October last year. If nothing else, this should have been updated...

Which kernel versions come with updates?? 'dirtycred' NEW android root exploit!!

Can someone please post, or is there a way I can find out what kernel version comes with each update on the a71?? Only certain kernel versions work with the exploit (5.10). So, I'm thinking to update my a71 to current updates... IF the current updates come with newer kernel?
theres a new exploit 'dirtycred'! theres some good info here on it and WORKING ANDROID CODE (unreleased for now):
https://twitter.com/i/web/status/1544379506659663872
it appears like older kernels wont work with the exploit according to one of the devs.
I'm thinking to update my a71 5g phone with the latest one UI 4.1 update, but unsure of the kernel version included??
Can anyone please post what kernel versions come in the a71 5g updates? or, link me where i can find this? in all the update documentation, i dont see any kernel version info
also, i see there IS a "dirty pipe" (not dirtycred) exploit fix in the latest updates. i am unsure if this will also fix dirtycred or not, though i dont think it will

Question why no update for SM-S908E/DS and build AVH9 (October update).????????

not sure why samsung is rolling the update in phases.
everywhere i look people with the s22 ultra have had their update roll.
i have the SM-S908E/DS (Snapdragon) and build AVH9 (October update) and still am waiting.
any ideas when the E variant will get it?
I recently got my s22 ultra, received 2 updates, the 2nd one was the one you mention, AVH9, I think itbis the lates one, or what are you referring to?
winoles said:
I recently got my s22 ultra, received 2 updates, the 2nd one was the one you mention, AVH9, I think itbis the lates one, or what are you referring to?
Click to expand...
Click to collapse
i want oneui5 android 13
avh9 is oneui 4 android 12
aalmosawi said:
i want oneui5 android 13
avh9 is oneui 4 android 12
Click to expand...
Click to collapse
You can download it from frija and flash via odin.
I'm on XXV 908E and A13 is out but I'm still stuck on August patch, is there a way for me to force the update through the phone and not use Odin?
S
IOmega666 said:
I'm on XXV 908E and A13 is out but I'm still stuck on August patch, is there a way for me to force the update through the phone and not use Odin?
Click to expand...
Click to collapse
Strange!! A13 is out for your country.
I advise you to use Odin.
mabmed said:
S
Strange!! A13 is out for your country.
I advise you to use Odin.
Click to expand...
Click to collapse
No. It's not.
Avh9 still hasn't received the update.
I swear Samsung is so painful.
At least on ios all updates are global at once but I am an android guy and I hate ios
aalmosawi said:
not sure why samsung is rolling the update in phases.
everywhere i look people with the s22 ultra have had their update roll.
i have the SM-S908E/DS (Snapdragon) and build AVH9 (October update) and still am waiting.
any ideas when the E variant will get it?
Click to expand...
Click to collapse
You are posting on XDA, not over Samsung support forum so no one can give you correct answer. Yes, XDA forum can help you to get alternate way to update to A13 if possible but for that you haven't provided minimum required info like CSC/Group of CSC you are having.
I have the model you mention eith XSG csc and i became yestrday the update for android 13
aalmosawi said:
not sure why samsung is rolling the update in phases.
everywhere i look people with the s22 ultra have had their update roll.
i have the SM-S908E/DS (Snapdragon) and build AVH9 (October update) and still am waiting.
any ideas when the E variant will get it?
Click to expand...
Click to collapse
You can follow this guide to manually update via Odin
dr.ketan said:
You are posting on XDA, not over Samsung support forum so no one can give you correct answer. Yes, XDA forum can help you to get alternate way to update to A13 if possible but for that you haven't provided minimum required info like CSC/Group of CSC you are having.
Click to expand...
Click to collapse
JazonX said:
You can follow this guide to manually update via Odin
Click to expand...
Click to collapse
That's dirty flashing and it'll leave a mess of a file system and I do not want to do that.
Installing another rom just so it has a different code Avh9 to BVJA ending adds extra stuff and will lead to a issues. There are differences between Avh9 and bvja obviously...
The Samsung servers check whether you have bvja and it'll update. Otherwise it'll leave the phone as is.
If I was rooted I could change the code manually and it'll update it. But I am not rooted.
It's a crappy route to take.
Strangely, MID (IRAQ) has not been updated since AVI7 ..
Since you're on XDA - I'd suggest to do it manually.
aalmosawi said:
That's dirty flashing and it'll leave a mess of a file system and I do not want to do that.
Installing another rom just so it has a different code Avh9 to BVJA ending adds extra stuff and will lead to a issues. There are differences between Avh9 and bvja obviously...
The Samsung servers check whether you have bvja and it'll update. Otherwise it'll leave the phone as is.
If I was rooted I could change the code manually and it'll update it. But I am not rooted.
It's a crappy route to take.
Click to expand...
Click to collapse
You screenshot suggets you have OXM group of CSC so you can update (with Odin) other country firmware like INS/XSG, you will have zero difference from firmware with your country because both are same OXM group of CSC and after flashing said country firmware your CSC still remain same.
aalmosawi said:
That's dirty flashing and it'll leave a mess of a file system and I do not want to do that.
Installing another rom just so it has a different code Avh9 to BVJA ending adds extra stuff and will lead to a issues. There are differences between Avh9 and bvja obviously...
The Samsung servers check whether you have bvja and it'll update. Otherwise it'll leave the phone as is.
If I was rooted I could change the code manually and it'll update it. But I am not rooted.
It's a crappy route to take.
Click to expand...
Click to collapse
That's dirty flashing and it'll leave a mess of a file system and I do not want to do that.
Click to expand...
Click to collapse
It's not exactly dirty flashing.
MID,INS,XSG all are a part of OXM CSC Package. You can flash any of the firmware's inside OXM to bump into any version you want unless it's a Downgrade.
Installing another rom just so it has a different code Avh9 to BVJA ending adds extra stuff and will lead to a issues.
Click to expand...
Click to collapse
It can lead to an issue (not exactly an issue) to do a factory wipe which is if Samsung changes something internally, and apart from that there's no issues doing it as I've been doing it since .. I dont know. Note 1 maybe. I was here when Dr. Ketan was modding Galaxy S2 i900. Since then we've been doing this dance.
The Samsung servers check whether you have bvja and it'll update. Otherwise it'll leave the phone as is.
Click to expand...
Click to collapse
Absolutely True.
It's a crappy route to take.
Click to expand...
Click to collapse
Agreed, But that's why we are here ... aren't we?
To get ahead of the rest and get it done.
If you're in Dubai, I'm more than happy meet over a coffee and help.
If not, Try Odin route as that's the only way until Samsung decides to add it.

Categories

Resources