Root on Z3v and D6616 - Xperia Z3 Developer Discussion [Developers Only]

Since zxzo0o collected the bounty for the Z3 root, us D6616 and Z3v users have been left out in the cold. I figured I would take it upon myself, with the help of anyone who is interested, to work towards root on these two models. This will be my first Android project, so the more assistance, the better.
There is a new CVE that may affect our devices, as well as most other Android devices. This is CVE-2015-1474, which is an overflow in the Graphics Buffer. This should be able to escalate privileges and allow us to run giefroot from there.
To start, I'll need this file from a Z3 (any model) that is currently rooted on the latest KK build (E or later): /system/lib/libui.so
From that file we should be able to see if Sony has patched this exploit (which I doubt). Then we need to figure out a way to exploit the buffer, gain escalated privileges, and run giefroot or our own tool to obtain root.

Here

Link does not work for me.
Sent from my D6616 using Tapatalk

Are you still working on this?

Doubtful.

+1 would really hope this is still being worked on.

It is not being worked on by me. I lack the necessary time and am most likely switching devices sometime soon. I hope someone else is looking into it

Good to know that boy, I have an Xperia Z3 T - mobile, D6616 I can help you anything you need. Just tell me what can I do to help, I will download stock ftf today to decompress it and see what files we can see. Using Fx file Explorer we can access to much information from the phone.
Sent from my D6616 using XDA Free mobile app

Don't forget we have a bounty for our Z3v in the subforum. Right now it's amounted to between $500 and $600. It'd be great to have support.

Anything happening with this?

Not for now, our hope is the new cve which developers are working to make a root tool with it, or the new software update which it's suppose to be on may 31st.
Sent from my D6616 using XDA Free mobile app

http://forum.xda-developers.com/showpost.php?p=60485574&postcount=93

Related

[Q] Returning my Xperia TL, Suggestions on what to get? (AT&T)

I have the Xperia TL lt30at, I LOVE it . Sadly though, it cannot be rooted because bootloader unlock allowed is set to no:crying:. I was given 2 weeks to try this phone out which will be up this friday and I would like to get a phone that can be rooted and is on par or better than the TL. I also have this thing called "trade up" which allows me to trade in my phone for 75% (300$) of its value (400$) credit towards a new phone at any time. So I can trade in for the Z if/when it comes out for AT&T if/when it comes out in the US. What on AT&T market right now for 400$-500$ should I grab? I'm new to Android from iOS and jailbreaking and the TL is my first android and I have loved it. So XDA, please help me out a bit and toss your opinions around. I will give thanks to all who give informative :good: and helpful replies and none to those just being dicks .
Thanks guys.
S0UND.w4v said:
I have the Xperia TL lt30at, I LOVE it . Sadly though, it cannot be rooted because bootloader unlock allowed is set to no:crying:. I was given 2 weeks to try this phone out which will be up this friday and I would like to get a phone that can be rooted and is on par or better than the TL. I also have this thing called "trade up" which allows me to trade in my phone for 75% (300$) of its value (400$) credit towards a new phone at any time. So I can trade in for the Z if/when it comes out for AT&T if/when it comes out in the US. What on AT&T market right now for 400$-500$ should I grab? I'm new to Android from iOS and jailbreaking and the TL is my first android and I have loved it. So XDA, please help me out a bit and toss your opinions around. I will give thanks to all who give informative :good: and helpful replies and none to those just being dicks .
Thanks guys.
Click to expand...
Click to collapse
Samsung SIII? Similar feature-wise, but slightly bigger. Has LTE and is available through At&t, and also apparently has a big dev community for AOSP, but if you purchase from at&t, it may be a special version in which the bootloader has been locked down. I guess you'd have to do some sleuthing in regards to that. You could always just return your TL to at&t and get an unlocked SIII from a third party; that way you'd know that you'd be able to unlock it...
Thanks for the reply
s_goff said:
Samsung SIII? Similar feature-wise, but slightly bigger. Has LTE and is available through At&t, and also apparently has a big dev community for AOSP, but if you purchase from at&t, it may be a special version in which the bootloader has been locked down. I guess you'd have to do some sleuthing in regards to that. You could always just return your TL to at&t and get an unlocked SIII from a third party; that way you'd know that you'd be able to unlock it...
Click to expand...
Click to collapse
I considered the SIII but the colors are a bit too saturated and the price tag was just a bit too high for me. Thanks for the response though.
LT30at can be rooted just not bootloader unlocked. Z will not be available on at&t.
Sent from my Sony Xperia™ Z
Spectre51 said:
LT30at can be rooted just not bootloader unlocked. Z will not be available on at&t.
Sent from my Sony Xperia™ Z
Click to expand...
Click to collapse
Just goes to show how dumb I am.. I thought you had to unlock the bootloader to root... I have read every guide on rooting for it and I must have messed up some place idk wtf
S0UND.w4v said:
Just goes to show how dumb I am.. I thought you had to unlock the bootloader to root... I have read every guide on rooting for it and I must have messed up some place idk wtf
Click to expand...
Click to collapse
http://forum.xda-developers.com/showthread.php?t=1886460
That's the root method to use but you have to install the backup and restore app manually before you do it since at&t removed it from their firmware.
Sent from my Sony Xperia™ Z
If you really want to switch, I'd say go for an HTC One VX/X possibly the white X. The sounds are much better and the phone feels just sexy in your hand! But you will have a mainstream 8MP camera (if you are concerned about it). I will not recommend Pantech as they are relatively new in the high end smartphone business AFAIK. Buying an Ion will actually be kind of a downgrade from the T. LG is not too durable and the Samsung devices that you have mentioned here seem to be a little outdated. AFAIK.
Thanks for the input man. I like the HTC but the screens seem a bit off colored in pictures compared to the bravia screens. What do you think?
I can't find how to install it manually. Any guides you could direct me to? Sorry in advance if it's staring me in the face and I'm blind.
S0UND.w4v said:
I can't find how to install it manually. Any guides you could direct me to? Sorry in advance if it's staring me in the face and I'm blind.
Click to expand...
Click to collapse
Download the apk for backup and restore. (it's in the link I posted above) Enable unknown sources in your android settings and when you open the apk it will offset you the option to install.
Sent from my Sony Xperia™ Z
How do I open it?
S0UND.w4v said:
How do I open it?
Click to expand...
Click to collapse
Do you know how to download and install apps that aren't from Google Patty?
Sent from my Sony Xperia™ Z
I figured it out with a little more help from a buddy. Thanks so much for all the help and patience. Any suggestions on what to do with a rooted phone? I have lucky patcher for my pandora. What other cool/fun stuff do you suggest? I may just hang in to my TL and trade up when the Z hits at&t. Not sure though
Sent from my LT30at using xda app-developers app
S0UND.w4v said:
I figured it out with a little more help from a buddy. Thanks so much for all the help and patience. Any suggestions on what to do with a rooted phone? I have lucky patcher for my pandora. What other cool/fun stuff do you suggest? I may just hang in to my TL and trade up when the Z hits at&t. Not sure though
Sent from my LT30at using xda app-developers app
Click to expand...
Click to collapse
I mainly rooted to remove the bloatware AT&T apps ( but now I use the LT30p firmware so no bloatware from AT&T). Z will not be available through AT&T, would have to get it unlocked instead.

Chromacast jailbreak. Any one working on it?

Anyone has any ideas to jailbreaking chromecast?
bisbal said:
Anyone has any ideas to jailbreaking chromecast?
Click to expand...
Click to collapse
Chromecast has been rooted. You have to have specific devices, as Google locked the device down and is unrootable after a certain point. Check to see if your serial number is listed in the "Rootable Serial Numbers" thread, and make sure you've never updated it over WiFi, as it will automatically install Google's updates and render your device locked permanently. All of this information is covered extensively in the threads around this one you started, use the information that is present.
http://forum.xda-developers.com/showthread.php?t=2537022
http://forum.xda-developers.com/showthread.php?t=2529903
http://forum.xda-developers.com/showthread.php?t=2578653
Also Google has open sourced Chromecast's API's so anyone can develop app support for it. The question is what you plan on doing once you root/jailbreak it. Whatever it is will still require development and app support.
borxnx: Thanks, but I already knew that, obviously I am talking about the *NEW* devices that have a protected bootloader! :-/
xlxcrossing: I knew all that too, I am not asking for API's or anything else, I am specifically asking for jailbreaking and being able to install my own ROM!
bisbal said:
borxnx: Thanks, but I already knew that, obviously I am talking about the *NEW* devices that have a protected bootloader! :-/
xlxcrossing: I knew all that too, I am not asking for API's or anything else, I am specifically asking for jailbreaking and being able to install my own ROM!
Click to expand...
Click to collapse
At the very least @rekids is working on a hardware method...
http://forum.xda-developers.com/showthread.php?t=2746636
http://forum.xda-developers.com/showthread.php?t=2698446
http://forum.xda-developers.com/showthread.php?t=2703327
I'm sure there are other threads, but that was just a quick few-minute search.
Likely you won't see anything open-public until it actually works, as it's a cat-and-mouse game with Google. Tip your hand early and Google could just roll out an update to stop you before the exploit is usable by a significant number of folks.
Maybe its because the exploit was patched very early but i fail to see any benefit from rooting.
And i say this as someone that used to flash 5 ROMs a week.
This device is very limited and i doubt root would allow much
Sent from my One X using Tapatalk
drivenby said:
Maybe its because the exploit was patched very early but i fail to see any benefit from rooting.
And i say this as someone that used to flash 5 ROMs a week.
This device is very limited and i doubt root would allow much
Sent from my One X using Tapatalk
Click to expand...
Click to collapse
Yet... Now Team Eureka has added native screen cast. That's definitely a bonus. Say that again in a year, after the chromecast2 comes out and Google changes everything, again.
Sent from my SCH-R530U using Tapatalk
borxnx said:
Yet... Now Team Eureka has added native screen cast. That's definitely a bonus.
Click to expand...
Click to collapse
It's more like early access for that, as it should get released to all (supported configurations) once Google declares it ready.
IMO, Team Eureka's web panel adds a whole lot, but I'm the type that likes control over things like DNS and being able to remotely reboot things.
-= this post enhanced with bonus mobile typos =-
I am quite sad that only those in the US got chance to root on early devices.
Im in the UK and just bought mine but cant install custom roms.
Hope some genius finds a workaround.

[NOT SAFE TO FLASH!]First attempt at porting Android Wear to Galaxy Gear

Hello everyone!
This is my first attempt at porting Android Wear to the Galaxy Gear! I am not an experienced dev and this was done fairly quickly using null_23 as a base and the Gear Live system dump. This is not at all ready and definitely not ready to flash. If you do decide to flash it, you risk bricking your device. That being said, I am requesting that a more experienced dev check over my work. If it seems in order, then it will be tested, until such a time, test at your own risk.
Link: http://d-h.st/go2
UPDATE: [ONLY FOR BRAVE PEOPLE INTERESTED IN TESTING]: Since I used null_ as the base, the addons are still available, but please do not flash any of them! And use the stock kernel for the time being!
UPDATE 2: It might be a good idea to try using the custom kernel we have available to us. If I can get an updater script from the gear live or other android wear device and look in to modifying the bootclasspath in the preexisting custom kernel that we have.
UPDATE 3: I have figured out how to modify the bootclasspath, will make the modification shortly. I just need an updater script for an android wear device and we may have a booting android wear port.
UPDATE 4: Link to Attempt 2 coming soon. This has a modified updater script that will hopefully set all permissions correctly. This may be all it needs to boot properly. If not, then I may still need some help getting the Gear Live Kernel to modify our kernel's bootclasspath. If anyone would like to flash this, same as before, I can't guarantee anything will work or that your device will work afterward.
Link: AWAttempt2.zip
UPDATE 5: added my slightly modified updater files from fomey's null_ ROM attached at the bottom. fomey, if we get this working, could you package it in to null_ as a second ROM option?
TekGadgt said:
Hello everyone!
This is my first attempt at porting Android Wear to the Galaxy Gear! I am not an experienced dev and this was done fairly quickly using null_23 as a base and the Gear Live system dump. This is not at all ready and definitely not ready to flash. If you do decide to flash it, you risk bricking your device. That being said, I am requesting that a more experienced dev check over my work. If it seems in order, then it will be tested, until such a time, test at your own risk.
Link: http://d-h.st/go2
Click to expand...
Click to collapse
Dude, you are fast!
I will not try it out right away because i just set up Null 23 and cloudnotifier so that to have notifications on the iPhone.
BTW, is there any chance that it will work with an iPhone. Ala Google Glass, that is.
TekGadgt said:
Hello everyone!
This is my first attempt at porting Android Wear to the Galaxy Gear! I am not an experienced dev and this was done fairly quickly using null_23 as a base and the Gear Live system dump. This is not at all ready and definitely not ready to flash. If you do decide to flash it, you risk bricking your device. That being said, I am requesting that a more experienced dev check over my work. If it seems in order, then it will be tested, until such a time, test at your own risk.
Link: http://d-h.st/go2
Click to expand...
Click to collapse
I just tried it out with the installation through TWRP, definitely not working as you said yet, just boot loops. I've been looking around in the zip and I see no problems that were noticeable. Hopefully this port of android wear can happen!
Sent from my SM-N900V using XDA Premium 4 mobile app
sandvich123127 said:
I just tried it out with the installation through TWRP, definitely not working as you said yet, just boot loops. I've been looking around in the zip and I see no problems that were noticeable. Hopefully this port of android wear can happen!
Sent from my SM-N900V using XDA Premium 4 mobile app
Click to expand...
Click to collapse
Thank you for testing so quickly! I'm glad it did not cause any serious issues to your device. I will do some talking with some devs I know and see what I can get worked out. Porting to the 1 will actually be easier than to the 2 or Neo, since there is an android base for the 1, unlike the 2 and Neo which are Tizen only.
Do you have a change log? If this is based on Null, it's still 4.2, while the wear launcher, if I remember correctly, requires a newer version of Android, probably 4.4. Just curious what your plans are to deal with that. Seems to me the only real options are either editing the wear app or porting 4.4 aosp and hoping the launcher works. Theoretically, the gear live dump could be ported but the major difference between cpus makes it a much more difficult task than people originally hoped. I think the best chance would be if a dev team (ie CM) were to pick up the protect, but there's the downside to a large bounty: there's a lot of people wanting to go it alone for the cash.
Sent from my VS985 4G using XDA Free mobile app
Trust me, I'm not doing this in an attempt to get the bounty. The money doesn't interest me at all. As far as the change log goes, this is the absolute first attempt, so there hasn't been anything changed yet. So again, this was a quick attempt in an effort to get the ball rolling and get the community involved in the development.
TekGadgt said:
Trust me, I'm not doing this in an attempt to get the bounty. The money doesn't interest me at all. As far as the change log goes, this is the absolute first attempt, so there hasn't been anything changed yet. So again, this was a quick attempt in an effort to get the ball rolling and get the community involved in the development.
Click to expand...
Click to collapse
No worries, I didn't think you were. You didn't have the typical billion "Donate please!" links that they would.
But what does first attempt mean? Just null kernel and modules with gear live system folder? I know a little about these things so I'd like to take a look, mostly out of curiosity, so I'd like to know what you've already done, preliminary as it is.
I agree though, we needed some kind of thread started and I agree that it's too early to put anything in the development forum.
Sent from my VS985 4G using XDA Free mobile app
Sent from my VS985 4G using XDA Free mobile app
JesusFreak316 said:
No worries, I didn't think you were. You didn't have the typical billion "Donate please!" links that they would.
But what does first attempt mean? Just null kernel and modules with gear live system folder? I know a little about these things so I'd like to take a look, mostly out of curiosity, so I'd like to know what you've already done, preliminary as it is.
I agree though, we needed some kind of thread started and I agree that it's too early to put anything in the development forum.
Sent from my VS985 4G using XDA Free mobile app
Sent from my VS985 4G using XDA Free mobile app
Click to expand...
Click to collapse
Not just a swapped out system folder. the base of the null_ system folder is still there. I only migrated the things necessary for a standard port. The only issue is that there is no ROM for the gear live yet, so a proper permissions section is not available for me to port from the updater script of the live to the updater script of the galaxy gear. I'm pretty convinced that if someone with a little more knowledge than myself edited the updater script permissions section to set the proper permissions for the new files, that this would at least boot.
Hi guys, I stumbled across this ebay listing item number 161368138405 . The seller claims he will update your gear to 4.4.2 for £25 + p & p , I have emailed the developer a link to the bounty thread, hopefully he may be able to help.
Sent from my SM-T320 using Tapatalk
Its some fake **** i think.
Would like to se a device info screen screenshot.
In the pictures he wirtes "This is not for the watch"
And later on "(1) Watch will become android 4,4,2"
Does he know what he is selling or not?
When he says "This is not for the watch", I think he means that you are not buying the watch in the picture. That is, you are not buying the physical watch, just the software upgrade.
I think it is high risk when you send your watch to him.
TekGadgt said:
...........
Click to expand...
Click to collapse
But for you rom is started?
4.2.2.
I wouldn't be surprised if he means 4.2.2.
He was pretty sure on his reply to me it was 4.4.2
RevengeDevTeam said:
But for you rom is started?
Click to expand...
Click to collapse
gingerdude said:
He was pretty sure on his reply to me it was 4.4.2
Click to expand...
Click to collapse
RevengeDevTeam: I have not necessarily classified this as a ROM, since it currently doesn't boot. That's why this is listed in the general thread. I am working on it, but there are no guarantees right now.
gingerdude: I'm pretty sure it's a scam. I wouldn't send him my watch if I were you.
gingerdude said:
Hi guys, I stumbled across this ebay listing item number 161368138405 . The seller claims he will update your gear to 4.4.2 for £25 + p & p , I have emailed the developer a link to the bounty thread, hopefully he may be able to help.
Sent from my SM-T320 using Tapatalk
Click to expand...
Click to collapse
Yeah, the listing was ended by the poster because there was an error in the listing. I bet he got scared cause people started to figure him out.
Oh that's a shame. I thought it might give you guys a head start
Will be watching with interest
Sent from my Nexus 5 using Tapatalk
richlum said:
When he says "This is not for the watch", I think he means that you are not buying the watch in the picture. That is, you are not buying the physical watch, just the software upgrade.
Click to expand...
Click to collapse
So I emailed the seller and he said it was Null Rom but it was 4.4...apparently he was mistaken haha
--------------------------------------------------------------------------------
From: shagmeimbj
To: lexirodster81
Subject: Details about item: shagmeimbj sent a message about Samsung gear watch SM- V700 unlocking service to android 4.4.2 #161368138405
Sent Date: Jul-16-14 06:37:52 PDT
Dear lexirodster81,
Can you maybe send a screenshot of the 4.4.2 in the settings menu...not saying I don't believe you haha these pics could be from Null rom though which is 4.2.
- shagmeimbj
This was his response...
"Dear shagmeimbj,
Hello
This service is to install the null rom what is 4.4.2
- lexirodster81
Click "respond" to reply through Messages, or go to your email to reply
Respond

[Q] Should I root or not

Ok so I just switched from an iPhone 6 plus to the note 4 and I love it but I keep seeing all the post about rooting and I don't know if it's for me I have jailbroken my iPhone before but I see so many different stuff like roms and am kind of lost and don't know where I would start and what to choose what's the difference between them and if it's even worth it any info and comments would be appreciated. Thanks
Dude, if you have a brain in your head. And a computer or laptop at home. WHAT are you waiting for??! Rooting and custom roms are always going to be my sht lol. Thus why when I get my laptop I am rooting right away. And start to learn to code android with a bunch of programs. Eventually i will bring out a rom myself. It's all about the love for the "sport". Only reason I haven't rooted is because the current computer I have sucks so bad, so slow. But once this taxes come in baby its on!
I haven't found the need to root just yet. If Lollipop releases before the official T-Mobile release, then may-be.
no... simple
But I still don't know why I should root and I I was going to root which one should I use and what does it mean when I see people are rooted and then they flash roms or something I don't want to brick my phone and will I still be able to jump because I hear that it will show that it's been rooted or something about Knox?
twe90kid said:
no... simple
Click to expand...
Click to collapse
The need to root should come before doing it. If you don't know what you're doing it for then you don't need it.
bigpapa2001 said:
But I still don't know why I should root and I I was going to root which one should I use and what does it mean when I see people are rooted and then they flash roms or something I don't want to brick my phone and will I still be able to jump because I hear that it will show that it's been rooted or something about Knox?
Click to expand...
Click to collapse
Based on your questions, you have ALOT of reading up to do before you should even attempt to root..Its super easy, but until you know what you are doing, and how to recover in case something goes wrong, don't be in a hurry to do anything...
Start here: http://forum.xda-developers.com/showthread.php?t=2903733
I'd recommend firekat for your first rom. I'm switching to some version of cm12 today, but you can work on that later when you are more comfortable with Odin and team win recovery.
I guess my main question is what can I do if I root that I can't do unrooted. I have unrooted a phone before thanks to this forum and the help users provided. I wouldn't do anything until I read and was sure of what I was doing but the curiosity has me thinking of doing it and as I read the post on these forums like everyone and their mother is rooted.
You won't brick. These phones are hard to brick. Just follow the instructions. They don't check if Knox is tripped to jump.
Ad blockers like adfree and adaway are big reasons for me. Makes it so you can use free apps without suffering through the ads. It's most important for me with free games and the CNN app:
You can see in that same picture cachemate. Using it and other cleaners requires root access.
Sd maid is another cleaner that needs root access to be fully functional. In the picture you can also see root browser which let's you see more of the phone than my files:
Titanium backup let's you remove the Tmobile bloat:
It requires root access.
Android_Monsters said:
You can see in that same picture cachemate. Using it and other cleaners requires root access.
Click to expand...
Click to collapse
you should stop advertising root to him.. LOL
Free tethering.
Ok well so far the only thing I would do it for would be for the hotspot what else could I benefit from and thanks for all the comments and info
Sent from my SM-N910T using XDA Free mobile app
Why would you say that?
Sent from my SM-N910T using XDA Free mobile app
Why would you say that
Sent from my SM-N910T using XDA Free mobile app

android mms vuln

Hello guys!
There's still not much info, but maybe these vulnerabilities would help gain root for those who took 5,1 ota?
CVE-2015-1538
CVE-2015-1539
CVE-2015-3824
CVE-2015-3826
CVE-2015-3827
CVE-2015-3828
CVE-2015-3829
whar do you think?
Well there isn't much info about the exploits out to the public yet, might be possible though since these exploits allow for remote code execution. I'm hoping for root, but do not need it all that much
Sent from my XT1254 using XDA Forums
Make lemonade out of lemons. Actually a good idea!
I love this idea, i wish i could help but i wouldn't even know where to begin. more information was released link below.
https://blog.zimperium.com/stagefright-vulnerability-details-stagefright-detector-tool-released/
I ran the check and as expected the turbo is vulnerable.
No surprise. It will take Moto half a year or more to patch this. Intrigued to see if this could be used as tools for a real root for those that are already on 5.1. Maybe a door to BL unlock? Would be shweeeet
Sent from my XT1254 using XDA Free mobile app
https://www.youtube.com/watch?v=PxQc5gOHnKs
judging by this video we are able to get root access from this exploit, no idea if it is permenant root or not, but it is definately something to toy around with..
Murd0c said:
judging by this video we are able to get root access from this exploit, no idea if it is permenant root or not, but it is definately something to toy around with..
Click to expand...
Click to collapse
Has anyone tried contacting the poster of the video?
Apparently, Google has already sent out the patch to carriers and manufacturers. Its up to them to create whatever they want to fix the exploit.
any news?
Good news guys. Zimperium has finally published stagefright exploit source! So we can start developing new root method
https://blog.zimperium.com/the-late...xploit-is-now-available-for-testing-purposes/
MutualFiend said:
Good news guys. Zimperium has finally published stagefright exploit source! So we can start developing new root method
https://blog.zimperium.com/the-late...xploit-is-now-available-for-testing-purposes/
Click to expand...
Click to collapse
That is great news, hopefully someone will be able to figure out a root method with this.
Sent from my XT1254 using XDA Forums
Maybe there's one more chance for our Turbos (and others) to be rooted on 5.* stagefright 2.0 (CVE-2015-6602 and CVE-2015-3876 ) There's still no POC but we can wait
I doubt it..
Sent from my XT1254 using Tapatalk

Categories

Resources