ID

VAR-E-201604-0423


EDB ID

44200


TITLE

Sony Playstation 4 (PS4) < 2.50 - WebKit Code Execution (PoC) - Hardware local Exploit

Trust: 0.6

sources: EXPLOIT-DB: 44200

DESCRIPTION

Sony Playstation 4 (PS4) < 2.50 - WebKit Code Execution (PoC). CVE-cve 2014-1303 . local exploit for Hardware platform

Trust: 0.6

sources: EXPLOIT-DB: 44200

AFFECTED PRODUCTS

vendor:sonymodel:playstationscope:eqversion:4<2.50

Trust: 1.0

vendor:sonymodel:playstationscope:eqversion:3<2.50

Trust: 0.6

sources: EXPLOIT-DB: 44200 // EDBNET: 96884

EXPLOIT

CVE 2014-1303 Proof Of Concept for PS4
==============
This repository contains a poc for the CVE 2014-1303 originally disclosed by Liang Chen. It has been tested to work on system firmware 2.03, but should work for systems on a firmware < 2.50, the ROP test will however only work on 2.03.

Usage
==============
You need to edit the dns.conf to point to the ip address of your machine, and modify your consoles dns settings to point to it as well. Then run
`python fakedns.py -c dns.conf`
then
`python server.py`
Debug output will come from this process.

Navigate to the User's Guide page on the PS4 and various information should be printed to the console. The ROP test will print what is stored in the rsp register. Continuing execution after rsp is pivoted still needs to be done.

Acknowledgements
================
Liang Chen
thexyz
dreadlyei

Download: https://github.com/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/44200.zip

Trust: 1.0

sources: EXPLOIT-DB: 44200

EXPLOIT LANGUAGE

md

Trust: 0.6

sources: EXPLOIT-DB: 44200

PRICE

free

Trust: 0.6

sources: EXPLOIT-DB: 44200

TYPE

WebKit Code Execution (PoC)

Trust: 1.6

sources: EXPLOIT-DB: 44200 // EDBNET: 96884

TAGS

tag:Console

Trust: 1.0

sources: EXPLOIT-DB: 44200

CREDITS

TJ Corley

Trust: 0.6

sources: EXPLOIT-DB: 44200

EXTERNAL IDS

db:EXPLOIT-DBid:44200

Trust: 1.6

db:EDBNETid:96884

Trust: 0.6

sources: EXPLOIT-DB: 44200 // EDBNET: 96884

REFERENCES

url:https://github.com/fire30/ps4-2014-1303-poc/tree/fe7cc108db4ec2843324fc36ecdd18e7f8947caa

Trust: 1.0

url:https://www.exploit-db.com/exploits/44200/

Trust: 0.6

sources: EXPLOIT-DB: 44200 // EDBNET: 96884

SOURCES

db:EXPLOIT-DBid:44200
db:EDBNETid:96884

LAST UPDATE DATE

2022-07-27T09:44:55.398000+00:00


SOURCES RELEASE DATE

db:EXPLOIT-DBid:44200date:2016-04-21T00:00:00
db:EDBNETid:96884date:2018-02-28T00:00:00