Root lg h900 real with tot make by tungkick

krissebesta

Member
Mar 11, 2011
18
18
0
Hey all! Good news! A 9-year-old bug called the "Dirty Cow" exploit still exists in the Linux/Android kernel can easily grant root on any Android phone!!! See the video below.

http://www.xda-developers.com/9-year...on-of-android/

So there's another bug to exploit for root and even possibly unlocking the bootloader! The bug has been fixed recently in Linux but hasn't been rolled into Android yet. If anyone can get this working on my AT&T LG V10 (running Marshmallow) I'll give a reward of $50! Plus you'll be my hero! Now get crackin!
 

P05TMAN

Senior Member
Aug 15, 2011
399
100
0
Boulder, CO
Hey all! Good news! A 9-year-old bug called the "Dirty Cow" exploit still exists in the Linux/Android kernel can easily grant root on any Android phone!!! See the video below.

http://www.xda-developers.com/9-year...on-of-android/

So there's another bug to exploit for root and even possibly unlocking the bootloader! The bug has been fixed recently in Linux but hasn't been rolled into Android yet. If anyone can get this working on my AT&T LG V10 (running Marshmallow) I'll give a reward of $50! Plus you'll be my hero! Now get crackin!
That link redirects to a 404; can you repost it? The full URL?


NM. I found it; it looks like the forum truncates the URL. Here it is in plain text:
Code:
http://www.xda-developers.com/9-year-old-linux-kernel-bug-dubbed-dirty-cow-can-root-every-version-of-android/


UPDATE: Ok... don't get too excited. I don't believe this will assist us in unlocking the bootloader, but it may provide us with root. The problem is, while doing so it leaves our phones vulnerable. Not to mention, I'm not sure if there's a way to prevent updating even if we can get root with this.

---------- Post added at 01:06 PM ---------- Previous post was at 12:48 PM ----------

So... I suppose if anyone really wants to test this can check out this link. Do so at your own risk/peril.
 
Last edited:

P05TMAN

Senior Member
Aug 15, 2011
399
100
0
Boulder, CO
Looks like this is being discussed in this thread. Seems like there's much more involved since SELinux gets into the picture. The ideal situation would be to find a way to get boot.img and recovery.img... that would be huge because then we may be able to actually get permanent root.


As an aside... is there any way to prevent updating?
 
  • Like
Reactions: manny18pr

P05TMAN

Senior Member
Aug 15, 2011
399
100
0
Boulder, CO
Looks like this is being discussed in this thread. Seems like there's much more involved since SELinux gets into the picture. The ideal situation would be to find a way to get boot.img and recovery.img... that would be huge because then we may be able to actually get permanent root.


As an aside... is there any way to prevent updating?
I'm going to see if I can use dirty cow to extract a boot.img and recovery.img. If I'm able to get those, is there anyone that can assist in next steps? Feel free to PM me if you can lend a hand in some way. We can collaborate on hangouts or whatever :D
 
  • Like
Reactions: manny18pr

Dakotahorse

Member
Oct 20, 2014
32
1
0
So, the link in this thread and others I have tried are broken, Does anyone have a stock TOT file? I want to to the MM update, I got it downloaded, but it will not let me while rooted. Mainly doing this for WIFI calling, since i get no signal in the house, and the apps do not work as well as the LG one (wife has a G4 that works good).
 

nabril15

Senior Member
Nov 9, 2012
1,533
305
103
Miami, FL
I didn't read the full thread, and I don't know the model number of the ATT variant. A little voice inside my head and inside my V10 says that probably not.
POSTMAN - I replied to your call for helpers in a previous post. Naturally, I'm scared of bricking it fully since there isn't a way to return to stock, correct? So, how can we test?
I desperately want root as we all do, but not at the price of losing my daily phone.
 

P05TMAN

Senior Member
Aug 15, 2011
399
100
0
Boulder, CO
I didn't read the full thread, and I don't know the model number of the ATT variant. A little voice inside my head and inside my V10 says that probably not.
POSTMAN - I replied to your call for helpers in a previous post. Naturally, I'm scared of bricking it fully since there isn't a way to return to stock, correct? So, how can we test?
I desperately want root as we all do, but not at the price of losing my daily phone.
Honestly, I'm not sure how we can test and what the risks will be if any.... though to test with boot.img may not be so bad since with a locked bootloader, any changes made would revert. I'm thinking this kernel vulnerability won't really help too much in getting us an unlocked bootloader.... that being said, I'm still learning/researching. Most of my Android testing is with other people's work and I haven't dug this deep before in the OS itself.
 
  • Like
Reactions: nabril15

colts2001

New member
Nov 3, 2016
1
0
0
I have a AT&T V10 @ 6.0 I would be more than happy to let the right person to play with it to see if they can get into it... Just let me know ?
 

ZVNexus

Recognized Developer
Feb 23, 2016
1,016
1,556
133
Rocky Hill
Last edited:
  • Like
Reactions: nabril15

krissebesta

Member
Mar 11, 2011
18
18
0
No one flash this until it confirmed works. It does come from LG's website though, so that's something... this probably means its official. Might be a test KDZ though, not actually for consumer use. Or maybe they saw us struggling down here and they felt bad ha.
Seems odd that the "official" LG download link is not found (404).

Download ATT LG V10 H900 stock FIRMWARE
Software Verison: H90021w
File size: 1.94GB
Download: H90021w_00_0921.kdz

Clicking the download link returns the following error:

This csmgdl.lgmobile.com page can’t be found
No webpage was found for the web address: http://csmgdl.lgmobile.com/dn/downloader.dev?fileKey=FW966RO7520CAX5D10ACLO6/WEB_H90021w_00_0921.kdz
Go to http://lgmobile.com/
Search Google for csmgdl lg mobile downloader
HTTP ERROR 404

However, the Mega link does work. So does anyone want to try this KDZ file? Please report back soon. Thanks!

---------- Post added at 05:39 AM ---------- Previous post was at 04:53 AM ----------

Hey all, here's ANOTHER flaw that might be utilized to gain full root access from a user space. This has been proven to work on an LG G4 and it seems that the V10 is based off the G4 so this is also another highly probable solution to get root.

http://www.xda-developers.com/new-r...ties-to-root-lg-samsung-and-motorola-devices/

Anyone interested in digging into it?
 
Last edited:

ZVNexus

Recognized Developer
Feb 23, 2016
1,016
1,556
133
Rocky Hill
Seems odd that the "official" LG download link is not found (404).

Download ATT LG V10 H900 stock FIRMWARE
Software Verison: H90021w
File size: 1.94GB
Download: H90021w_00_0921.kdz

Clicking the download link returns the following error:

This csmgdl.lgmobile.com page can’t be found
No webpage was found for the web address: http://csmgdl.lgmobile.com/dn/downloader.dev?fileKey=FW966RO7520CAX5D10ACLO6/WEB_H90021w_00_0921.kdz
Go to http://lgmobile.com/
Search Google for csmgdl lg mobile downloader
HTTP ERROR 404

However, the Mega link does work. So does anyone want to try this KDZ file? Please report back soon. Thanks!

---------- Post added at 05:39 AM ---------- Previous post was at 04:53 AM ----------

Hey all, here's ANOTHER flaw that might be utilized to gain full root access from a user space. This has been proven to work on an LG G4 and it seems that the V10 is based off the G4 so this is also another highly probable solution to get root.

http://www.xda-developers.com/new-r...ties-to-root-lg-samsung-and-motorola-devices/

Anyone interested in digging into it?
I checked it out, I got my file from a different link, that went to their website. I went to that link again, and it seems they took it down. Well, we have it now! I will check that G4 flaw out though.
 

serdoch

Member
Mar 24, 2011
6
1
23
Ok so if that's right why does mine read like this ?
Android version 6.0 and Software version H90021w? Have a screen shot but it won't upload.
I'm pretty sure that's marshmallow. So I'm not understanding or ....?
 
Last edited:

ZVNexus

Recognized Developer
Feb 23, 2016
1,016
1,556
133
Rocky Hill
Looking at the version of the file "web_h90021w_00_0921.kdz" looks like it is for Lollipop 5.1 (the 21w after h900 means Android 5.1). So using this KDZ file people could use the LGUpdate to "reflash" their Marshmallow phones back to Lollipop 5.1 and then gain root. This page describes the file name.
http://android.stackexchange.com/questions/150692/what-is-the-meaning-of-kdz-file-name-format
It's definitely not Lollipop. Has all the features of a MM ROM. Wifi calling and bug fixes. Plus if it was Lollipop it wouldn't be able to flash from MM