Anyone know if the "Swift keyboard" vulnerability has been patched? - Samsung Galaxy A50 Questions & Answers

I stumbled upon a post from 2015 stating there is a vulnerability with swift keyboard app since its installed by default and can't be uninstalled and is ran with system privileges, but seeing as the date is 2015, i didnt want to waste the time trying until i found out if it's patched or not.
The device I'm using right now is a A505U but also would be wanting to try on a S20+ 5G and a Note 10
If anyone knows anything about this vulnerability or wants to learn more about it, the post I stumbled upon is: h t t p s : / / w w w . nowsecure . c o m /blog/2015/06/16/remote-code-execution-as-system-user-on-samsung-phones/
it states that all samsungs with Samsung IME keyboard which is a modified Swift keyboard built upon the Swift SDK are vulnerable if running as system user.
a PoC from that post is on github here: h t t p s : / / github . c o m /nowsecure/samsung-ime-rce-poc/
The vulnerability has been assigned the following CVEUs by CERT: CVE-2015-4640 and CVE-2015-4641.
If this hasn't been patched then this is a way to root the Qualcomm phones fersure, but setting up an automated root would seem difficult due to the need for MITM attacks required. But would be easy to make a noob friendly, but lengthy tutorial.
Also would it be against the rules to make this post in multiple phones forums? say the s20 and note 10 as well as this post here?
Thanks.
PS. can a moderator edit my post so the link is an actual link since I dont have 10 posts yet.

Related

Lifetab E10310 root

Hi folks,
I would appreciate it if someone can help me getting the Lifetab Tablet (E10310) rooted which I bought about a week ago. Unfortunately I have to post the thread here because of the forum restrictions (less than 10 posts...).
Referring to the main threat http://forum.xda-developers.com/showthread.php?t=1886460 modes 1, 2 and 3 haven't worked with the latest v30. It seemed that mode 2 was close to get the tab rooted at least as the console screen didn't show up where you have to enter the two command-lines (/data/local/tmp/...). Further the background image changed and the manufacturer characteristic apps were gone after the process so I had to make a factory reset.
Specifications of the tablet are as followed:
Medion Lifetab
Model: E10310 (MD 98382)
MSN: 30015596
OS: JB 4.1.1
Kernel version: 3.0.8+
[email protected] #5
SMP PREEMPT Thu Mar 28 10:53:20 CET 2013
Build number: JRO03H.20130328.143339-r
Maybe someone from you or Bin4ry himself can give something to the best thanks
rooting method lifetab
Isn't there anyone having an idea ?
I think there are many people searching for a way to get the tablet rooted, can't believe it's that complicated. Maybe someone can refer this thread to the upper main thread.
I would spend two beers for the person who got a solution for the problem
V31 doesn't work too.
Still nobody who knows to root Lifetab E10310??
It's possible!
I've just found the way to do it, thanks to this thread (in French).
It uses the Chinese VRoot method, explained here. I have just applied it without problem. My tablet is now rooted.
Just be sure to delete the original Chinese superuser app with a file manager, as described in the main thread.
In addition, I had also to uninstall the app with a chinese title (at the end of the apps list), that is installed during the procedure. I have no idea of what it does but it is present in the App Store. Anyway, I don't understand the messages in Chinese. That second app is not described in the main thread, probably because it is installed by a new version of the VRoot Windows program. You don't need it.
[EDIT] The installed app is available on the Play Store here: https://play.google.com/store/apps/details?id=com.mgyun.shua.su
Thanks r0lZ :highfive:
it works perfectly.
im looking to enter the recovery mode if this tablet since kaspersky locked my friendsout.
he wanted to uninstall kaspersky because his license ran out, it asked for a code and now he cannot use his tablet anymore

Zopo ZP980+ (2GB/32GB)

I welcome everybody to the thread about the upgraded ZP980.
ZP980 vs ZP980+
The + version is supposed to be the exact same hardware as the ZP980, only with double the internal memory and RAM.
Why a separate thread for this variation?
Many people have pointed out that this model is basically the same as the ZP980 except for the size of the RAM and the internal storage (2GB vs 1GB and 32GB vs 16GB respectively).
The discussion is still going on in the ZP980 thread. Until it is 100% confirmed that everything works exactly the same for both phones, I am planning to keep this thread. Except if XDA decides differently of course.
In any event, this thread was not created to compete with the ZP980 thread. Personally I follow that one too and participate in the discussion. This thread here only exists as a point of reference for confirmed methods, tricks, ROMs and recoveries for the ZP980+.
Can I try ROMs and other stuff I find in the thread for the standard ZP980?
I would say yes, with some caution.
In case you try something that works or -even more important- something that does not work, please be kind and share with us in this thread. This way you are helping the community take the most out this excellent piece of hardware and avoid mistakes.
Phone specs:
5" screen
FHD Super Retina Display 1920*1080 pixels, 441PPI, OGS
CPU MTK6589T - 1.5Ghz
2GB RAM
32GB internal storage
13-megapixel rear camera
Android 4.2 out of the box
2G: GSM/EDGE 850/900/1800/1900 MHz
3G: HSPA 850/2100 MHz
Battery:Li-Polymer, 2000mAh
Dimensions: 143.3 x 70 x 8.5mm
Weight: 150g
IF YOUR PHONE DOES NOT HAVE THESE EXACT SPECS, PLEASE BE VERY CAREFUL ABOUT WHAT YOU READ IN THIS THREAD.
Confirmed Root Methods
1. Framaroot: http://forum.xda-developers.com/showthread.php?t=2130276 (first reported by Jan1959)
Note: it is possible that after upgrading to the latest version Framaroot does not work any more.
2. Eroot has worked for some users.
Credits go to the people who developed all the stuff that I mention in this post and to the people who pointed them out to me to include them here.
I repeat:
IF YOUR PHONE DOES NOT HAVE THESE EXACT SPECS, PLEASE BE VERY CAREFUL ABOUT WHAT YOU READ IN THIS THREAD.
My ZP980+ is waiting for me in Greece. I'll have it in a couple of weeks since I live in Switzerland.
But I couldn't wait to open this thread and prepare for what I need to do.
Has anybody already received it?
Did you manage to root it?
I managed rooting it via ERoot. I learnt that this is the only possibility to get rooted new zopo generation. Would be glad if there were another also working with linux. But as far as I know, there has not been any yet.
Dimitris, will you keep 1st post of this thread actual? It would be useful, if any custom ROM fully compatible with this model were linked in this opening thread as well as root tools and other useful tooling.
Maheshwara said:
I managed rooting it via ERoot. I learnt that this is the only possibility to get rooted new zopo generation. Would be glad if there were another also working with linux. But as far as I know, there has not been any yet.
Dimitris, will you keep 1st post of this thread actual? It would be useful, if any custom ROM fully compatible with this model were linked in this opening thread as well as root tools and other useful tooling.
Click to expand...
Click to collapse
The answer is
http://forum.xda-developers.com/showthread.php?t=2130276
Maheshwara said:
I managed rooting it via ERoot. I learnt that this is the only possibility to get rooted new zopo generation. Would be glad if there were another also working with linux. But as far as I know, there has not been any yet.
Dimitris, will you keep 1st post of this thread actual? It would be useful, if any custom ROM fully compatible with this model were linked in this opening thread as well as root tools and other useful tooling.
Click to expand...
Click to collapse
I am planning to keep the 1st post up to date IF nobody else offers to do it (I am sure XDA can change the poster of the OP if we ask them to, I have seen it done in other forums).
I only started this thread because I wanted to make a clear distinction and avoid bricking my device (selfish me) and also help others avoid bricking their devices.
I will add in the OP any useful piece of information that I see posted in the thread, starting with Framaroot (by Jan1959) and ERoot (by you) will follow if you explain a bit more (either describe what you did or provide a link as Jan1959 did ).
Jan1959 said:
The answer is
http://forum.xda-developers.com/showthread.php?t=2130276
Click to expand...
Click to collapse
Did you succeed with this method? If not, do you know anybody who did? I don't see this model in their list so I guess somebody should let them know so that they add it there.
Dimitris CH said:
I am planning to keep the 1st post up to date IF nobody else offers to do it (I am sure XDA can change the poster of the OP if we ask them to, I have seen it done in other forums).
I only started this thread because I wanted to make a clear distinction and avoid bricking my device (selfish me) and also help others avoid bricking their devices.
I will add in the OP any useful piece of information that I see posted in the thread, starting with Framaroot (by Jan1959) and ERoot (by you) will follow if you explain a bit more (either describe what you did or provide a link as Jan1959 did ).
Did you succeed with this method? If not, do you know anybody who did? I don't see this model in their list so I guess somebody should let them know so that they add it there.
Click to expand...
Click to collapse
Yes, it works fine
Jan1959 said:
Yes, it works fine
Click to expand...
Click to collapse
I seems to be logical that it works, because I do not know a root method which works on zp980h, but does not on c2 platinum. C2 platinum can be found in compatibility list. It is the 1st model of the higher zopo generation.
Maheshwara said:
I seems to be logical that it works, because I do not know a root method which works on zp980h, but does not on c2 platinum. C2 platinum can be found in compatibility list. It is the 1st model of the higher zopo generation.
Click to expand...
Click to collapse
I dont know what you mean that it seems to be logical that is works.
I run the app and mine zopo 980 (2 GB ram en 32 GB rom delivered last week) is rooted.
I check it and work with a rooted device. :laugh:
Jan1959 said:
I dont know what you mean that it seems to be logical that is works.
I run the app and mine zopo 980 (2 GB ram en 32 GB rom delivered last week) is rooted.
I check it and work with a rooted device. :laugh:
Click to expand...
Click to collapse
This referred to Dimitris' allusion, that zp980h is not part of the compatibility list. I mean that older root methods (i. e. motorola apk exploit and so on) do not work any more with newer zopo devices. 1st of these devices is c2 platinum. Up to now, I have known only eRoot which is able to root it and zp980h. If framaroot works with this, it should also work with zp980h.
going to follow this, ordered mine 21/08 on mixeshop for shipment to belgium.
Hope it's on his way because they say 5 to 7 days and the 5 day is today and status is still processing but i read that chinese shops don't put a lot of effort on status changes, maybe anyone experience with this shop?
I used eroot and manage to root with one click without problems. win7 have installed all the necessary drivers automatic.
Poslano sa mog ZP980 koristeći Tapatalk 4
I had problems with eroot and the drivers on Win7.
But the method from the OP (Framaroot) worked for me great.
Just copied the file, installed the app. After that just opened, selected SuperSU and Boromir exploit). After that reboot and I have now root (already eliminated this annoying bootsound)
Thanks for the tip!
---------- Post added at 03:28 PM ---------- Previous post was at 03:25 PM ----------
joeri1985 said:
going to follow this, ordered mine 21/08 on mixeshop for shipment to belgium.
Hope it's on his way because they say 5 to 7 days and the 5 day is today and status is still processing but i read that chinese shops don't put a lot of effort on status changes, maybe anyone experience with this shop?
Click to expand...
Click to collapse
I bought it from zopomobileshop.com and they were just great with the updates and communication.
Framaroot does not work with zp980h. I have just tried - it is nothing more than root in the shell. This is not enough (at least not for me).
---------- Post added at 08:39 PM ---------- Previous post was at 08:26 PM ----------
doongoo said:
I had problems with eroot and the drivers on Win7.
But the method from the OP (Framaroot) worked for me great.
Just copied the file, installed the app. After that just opened, selected SuperSU and Boromir exploit). After that reboot and I have now root (already eliminated this annoying bootsound)
Thanks for the tip!
---------- Post added at 03:28 PM ---------- Previous post was at 03:25 PM ----------
I bought it from zopomobileshop.com and they were just great with the updates and communication.
Click to expand...
Click to collapse
Framaroot did not work at all with my phone. Which version did you use? Did you upgrade to today's OTA-Upgrade before rooting?
Maheshwara said:
Framaroot does not work with zp980h. I have just tried - it is nothing more than root in the shell. This is not enough (at least not for me).
---------- Post added at 08:39 PM ---------- Previous post was at 08:26 PM ----------
Framaroot did not work at all with my phone. Which version did you use? Did you upgrade to today's OTA-Upgrade before rooting?
Click to expand...
Click to collapse
I used latest version, I think 1.6, and didn't` upgraded before
tapatalked from a ZOPO ZP980
doongoo said:
I used latest version, I think 1.6, and didn't` upgraded before
tapatalked from a ZOPO ZP980
Click to expand...
Click to collapse
Ok, then with new Upgrade for zp980h, it does NOT WORK any more. Old binaries are updated, but root access fails. Could you please verify that by upgrading and then trying to root again?
Can somebody show me a thread on XDA where Eroot is discussed?
Maheshwara said:
Ok, then with new Upgrade for zp980h, it does NOT WORK any more. Old binaries are updated, but root access fails. Could you please verify that by upgrading and then trying to root again?
Click to expand...
Click to collapse
After updating today the zopo was unrooted.
After starting framework1again the zopo was once again rooted.
Until now it works fine.
zp980h 2gb/32gb using nvram warning
Dimitris CH said:
Confirmed Root Methods
1. Framaroot: http://forum.xda-developers.com/showthread.php?t=2130276 (first reported by Jan1959)
Note: it is possible that after upgrading to the latest version Framaroot does not work any more.
2. Eroot has worked for some users.
Credits go to the people who developed all the stuff that I mention in this post and to the people who pointed them out to me to include them here.
I repeat:
IF YOUR PHONE DOES NOT HAVE THESE EXACT SPECS, PLEASE BE VERY CAREFUL ABOUT WHAT YOU READ IN THIS THREAD.
Click to expand...
Click to collapse
HELLO DEAR
I AM USING KING SLIM ROM FROM NEEDROM , BUT EVEN ON OTHER ROMS MY PHONE IS SHOWING SAME NVRAM ERROR WHEN I SEARCH ANY WIFI NETWORK. AND WIFI IS NOT WORKING
PLEASE GUIDE WHAT SHOULD I DO . SOME DETAILS OF MY PHONE WITH ANOTHER ROM
MODEL NO - ZP980
BASEBRAND VERSION MOLY.WR8.W1248.MD.WG.MP.V7.P1
BUILD NO - ZP980 20130615-YZFL
WIFI MAC ADDRESS - 00:08:22:3C:07:4F
PLESE GUIDE WHAT TO DO
PROBS ARE
NO WIFI SIGNALS EXCEPT NVRAM ERROR.
CAN ANYBODY SOLVE THIS PROB PLZ SUGGESS.:fingers-crossed:
Hello Topicmates,
could you please provide me a step-by-step guide how to come back to factory state of the phone. I have a ZP980 2GB/32GB version.
I have rooted with framaroot, everything was ok. After that I have OTA updated with the latest update and now all the google apps are force closing. Therefore I want to revert back to Stock ROM and after it OTA update (an thereafter root again).
What do I need for that? Should I try at first simple factory reset?

SM-T113NU to Lollipop

Is there a way to upgrade/update Samsung Galaxy Tab 3E or SM-T113NU to Lollipop OS? and also root it? Sorry kinda new to this android thing. So correct my mistakes if i am wrong. I found a site lollipopupdate.xyz/tag/samsung-galaxy-tab-3-v-lollipop-upgrade] telling it's possible with tutorial and it credits xda-developers.com. Also if it's true can you point me out on how to do it properly step by step and the download link. Download link on the given site requires a survey that needs to input phone number. I just want it to run faster and better, it's for my daughter by the way. Thank you very much.

[LEAKED][UEFI]Leaked Secure Boot "Golden" keys

Not sure if anyone heard this or what but apparently, Microsoft accidentally leaked the UEFI Secure Boot master or "golden" key on the latest builds of Redstone v1607 . Those keys have the potential to totally disable UEFI Secure Boot on almost all devices with no option to disable secure boot (yes that includes us, Windows Phone users). This is some good stuffs for us!
You can grab yourself a key here: https://rol.im/SecureBoot.zip .
Re-upload here, just in case... https://mega.nz/#!Nssj0KzS!fsAwe9TolI2a_pSBU0sr6mBkPAr7G77JeMqtHxQstNg
More info about the exploit here: https://rol.im/securegoldenkeyboot/
Now let's just hope that Microsoft doesn't decide to update the bootloader to fix this exploit but I don't think they can do that in an instant update/patch...
Mods, feel free to move this thread if it needs too since this vulnerability doesn't only apply to Windows Phone. Thanks
Sent from Ponyville
mrchezco1995 said:
Not sure if anyone heard this or what but apparently, Microsoft accidentally leaked the UEFI Secure Boot master or "golden" key on the latest builds of Redstone v1607 . Those keys have the potential to totally disable UEFI Secure Boot on almost all devices with no option to disable secure boot (yes that includes us, Windows Phone users). This is some good stuffs for us!
You can grab yourself a key here: https://rol.im/SecureBoot.zip .
Re-upload here, just in case... https://mega.nz/#!Nssj0KzS!fsAwe9TolI2a_pSBU0sr6mBkPAr7G77JeMqtHxQstNg
More info about the exploit here: https://rol.im/securegoldenkeyboot/
Now let's just hope that Microsoft doesn't decide to update the bootloader to fix this exploit but I don't think they can do that in an instant update/patch...
Mods, feel free to move this thread if it needs too since this vulnerability doesn't only apply to Windows Phone. Thanks
Sent from Ponyville
Click to expand...
Click to collapse
duplicate :http://forum.xda-developers.com/win...eard-windows-secure-boot-golden-keys-t3436657
B U L K / P I P E i n t e r f a c e D e f a u l t c o n f i g u r a t i o n U S B F u n c t i o n D e b u g C l i e n t M i c r o s o f t NAME? NAME= FVE-EOW FVE-EOWBM FVE-EOWBR -FVE-FS- P B K D F 2 _ H M A C _ S H A 2 5 6 1.3.6.1.5.5.7.3.3 1.3.6.1.5.5.7.3.8
"1.3.6.1.5.5.7.3.3 indicates that the certificate is valid for code signing. Always specify this value to limit the intended use for the certificate."
What is this?
ngame said:
duplicate :http://forum.xda-developers.com/win...eard-windows-secure-boot-golden-keys-t3436657
Click to expand...
Click to collapse
Didn't saw that earlier... Was just too excited when I saw this news on NCIX's Netlinked Daily on YouTube earlier... Then I just did some lil' search on Google to realize that the exploit was out 2 days ago... :/
Oh well... XD
Sent from Ponyville
To clarify, @mrchezco1995, Microsoft is unable to patch the vulnerability for most already-existing devices, because in doing so they would revoke manufacturers/operators from being able to service the device without a jtag/serial connection. For example, any software patch would prevent recovery partitions (like on OEM computers, or the SoftReset option) from passing validation. They can only fix this for future devices.
Thread already exists for this here:
http://forum.xda-developers.com/win...eard-windows-secure-boot-golden-keys-t3436657
Please search before posting. Thread closed.

ECG released here maybe ? ( need to check this file )

hi guys sorry i have a concern, maybe it is also the wrong place to post this question / file, I am the owner of the galaxy watch active 2 with the latest US 5.5 update
when I install the classic ecg via sdb the icon appears for a moment and then disappears, on the various telegram groups this tpk has been posted in which it is stated that it works but I am doubtful about its origin, can you kindly check this file? thank you so much.
I don't have the tools to be able to analyze this .tpk files so I rely on you, and be aware that it could do damage to your smarthwatch
What kind of phone do you have?
This only works on Samsung devices

Categories

Resources