Fullmetal5 / bluebomb

A Bluetooth exploit for the Nintendo Wii.
GNU General Public License v3.0
289 stars 26 forks source link

Bluebomb doesn't currently work on Wiis with Error 003. #20

Open InternalLoss opened 4 years ago

InternalLoss commented 4 years ago

As mentioned in DMs, Wiis with Error 003 don't work with Bluebomb currently.

Bluebomb log when trying this on a 4.3E Wii with Korean key injected into SEEPROM to cause the error:

Bluebomb v1.5
Detected system menu
App settings:
    L2CB: 0x811725E0
    payload_addr: 0x80004000
Opening raw handle for device hci0
Opening control handle for device hci0
Configuring device
Powering on device
Setting device connectable
Setting device bondable
Setting device discoverable
Setting device local name
Setting IAC LAP
HCI_WRITE_CURRENT_IAC_LAP_COMMAND received
Enabling Inquiry+Page scanning
HCI_WRITE_SCAN_ENABLE_COMMAND received
Waiting to accept
Got connection handle: 21
Sending SDP service response
Sending SDP attribute response
Sleeping for 5 seconds to try to make sure stage0 is flushed
Doing hax
Overwriting callback in switch case 0x9.
Trigger switch statement 0x9.
Sending hax
Awaiting response from stage0

From Wiibrew as you quoted: System Menu 4.2E/U/J and higher call a new ES Ioctlv(0x45) which got added in IOS70. On older(check!) IOSs this Ioctlv always returns -1017.

Fullmetal5 commented 4 years ago

So I finally got around to testing this and bluebomb worked fine when testing in Dolphin, if you still have a device with an 003 brick can you retest and see if you are still having problems and if so can you test on a normal system menu just to make sure it's not a problem with your bluetooth controller.

potaedaus commented 4 years ago

Hey, I have 2 Wiis with error 003. What's installed is System Menu 4.3U. I'm using a laptop with Ubuntu 20.04 LTS if that's important. Still getting the same error as @InternalLoss -

Awaiting response from stage0

I tried using the same setup on a 4.3U Wii that's not bricked and it works without any problems. Only stuck on the Wii with error 003.

valenroy commented 4 years ago

I have just tested this on my bricked 4.3U Korean console and it doesn't work, the program would just be awaiting response from stage0. Any possibility of fixing this and it would sure save a lot of people precious amount of time to unbrick their consoles. Thanks. Tested this on my raspberry pi 4 on raspbian by the way.

anito9999 commented 4 years ago

This issue is indeed true I have 2 US Wii's that I managed to get the Homebrew channel installed using bluebomb so I know everything should be working fine but I also got 2 korean Wii's with error 003 and I getting the exact same message "Awaiting response from stage0" maybe the system keys needs to be cleared first before it can work just like the homebrew Koreankii can get rid of the error if you can still boot to bootmii.

noizerpark commented 4 years ago

I have a 4.3K pink-green bricked Korean Wii(wrong wii system menu flashed). Same problem in this issue. Bluebomb doesn't work. Bluebomb catch the signal from Wii but no progress after Awaiting response from stage0

KokoseiJ commented 4 years ago

Can confirm, Bluebomb doesn't work on pink-green bricked wii. Just wanted to let you know guys that I have a bricked one that can be used for testing - Please mention me if There's some new payloads that needs to be tested.

ZXBOLI commented 3 years ago

Will it will work in SaveMiiFrii mode? Just to run the exploit after entering SaveMiiFrii mode, by using a gamecube controller.

KokoseiJ commented 3 years ago

I tried it, but it was no use.

Wosniak commented 3 years ago

I have an wii with 003 error and tried to create a bootable Mario Kart disc, and tried to run the exploit, but also got stuck in the "Awaiting response from stage0" message....

KokoseiJ commented 3 years ago

I have a 4.3K pink-green bricked Korean Wii(wrong wii system menu flashed). Same problem in this issue. Bluebomb doesn't work. Bluebomb catch the signal from Wii but no progress after Awaiting response from stage0

Just for the record, I recently tried Super Mario Galaxy 2 Korean disc on a recovery menu, and It actually unbricked the Wii.

What I'm suspecting is that it triggered the update due to korean Wii SysMenu having the highest version among the all regions(518). While I'm not sure if this is the true, If it is, You can theorically use any korean discs that contain 4.3K update and use it with SaveMiiFrii to recover it.

ZXBOLI commented 3 years ago

I have a 4.3K pink-green bricked Korean Wii(wrong wii system menu flashed). Same problem in this issue. Bluebomb doesn't work. Bluebomb catch the signal from Wii but no progress after Awaiting response from stage0

Just for the record, I recently tried Super Mario Galaxy 2 Korean disc on a recovery menu, and It actually unbricked the Wii.

What I'm suspecting is that it triggered the update due to korean Wii SysMenu having the highest version among the all regions(518). While I'm not sure if this is the true, If it is, You can theorically use any korean discs that contain 4.3K update and use it with SaveMiiFrii to recover it.

Really?Where did you find the Korean version of Super Mario Galaxy 2? That's pretty rare.

anito9999 commented 3 years ago

I have a 4.3K pink-green bricked Korean Wii(wrong wii system menu flashed). Same problem in this issue. Bluebomb doesn't work. Bluebomb catch the signal from Wii but no progress after Awaiting response from stage0

Just for the record, I recently tried Super Mario Galaxy 2 Korean disc on a recovery menu, and It actually unbricked the Wii. What I'm suspecting is that it triggered the update due to korean Wii SysMenu having the highest version among the all regions(518). While I'm not sure if this is the true, If it is, You can theorically use any korean discs that contain 4.3K update and use it with SaveMiiFrii to recover it.

Really?Where did you find the Korean version of Super Mario Galaxy 2? That's pretty rare. I doubt it will be easy to find even the unbrick disk iso's are hard to get these days unless he is willing to share it.

InternalLoss commented 3 years ago

SMG2 is probably not that hard to find - the issue is that US/EU Wiis will not boot a Korean game, no matter how hard you try. Assuming Bluebomb was able to be fixed to work even with Error 003, you could just run a WAD installer and install latest Korean sys menu + IOSes, straight from NUS.

anito9999 commented 3 years ago

SMG2 is probably not that hard to find - the issue is that US/EU Wiis will not boot a Korean game, no matter how hard you try. Assuming Bluebomb was able to be fixed to work even with Error 003, you could just run a WAD installer and install latest Korean sys menu + IOSes, straight from NUS.

right so if you already flashed your Korean WII with the US firmware like what happened on mine which caused my error 003 you will need the US version of SMG2 as it wont boot the Korean Version anymore I used to be able to un-brick error 003 with the known method but I lost my copy of the modified ISO's and I can't find them anywhere online and I no longer have the Burned Discs I used to use.

KokoseiJ commented 3 years ago

Really?Where did you find the Korean version of Super Mario Galaxy 2? That's pretty rare.

@ZXBOLI well I'm korean lol. I borrowed it from my pal.

SMG2 is probably not that hard to find - the issue is that US/EU Wiis will not boot a Korean game, no matter how hard you try. Assuming Bluebomb was able to be fixed to work even with Error 003, you could just run a WAD installer and install latest Korean sys menu + IOSes, straight from NUS.

@InternalLoss I was mentioning it because pink-green brick only occurs when you install SysMenu from the wrong region in Korean Wii. I tried to imitate the brick by setting the region of my Japanese Wii to Korean(I bricked mine by installing Japanese SysMenu on Korean Wii without region changing btw). While it indeed shows pink-green corrupted screen, It looks different from Korean Wii- It doesn't look like a strip, rather pink and green clown vomit. Plus, It just doesn't happen if the region is set to other countries, pink-green brick is something that only happens when your Wii's region is set to Korean, and even then, the shape of it seems to change depending on its original region.

So, if you're seeing pink-green stripped full brick, chances are your console is already Korean Wii, thus it can already run Korean discs.

right so if you already flashed your Korean WII with the US firmware like what happened on mine which caused my error 003 you will need the US version of SMG2 as it wont boot the Korean Version anymore I used to be able to un-brick error 003 with the known method but I lost my copy of the modified ISO's and I can't find them anywhere online and I no longer have the Burned Discs I used to use.

My Wii's SysMenu was overwritten to Japanese version. yet it still read the disc just fine. The fact that you're seeing pink-green screen means that your region is still at Korean, and It will still read korean discs with no problem.

hereforever commented 2 years ago

Has there been any updates on this? Would love to see a fix finally without a chip

pxdl commented 1 year ago

Would be great to get any development on this, unbricking Wiis with the 003 error is getting harder as time goes on due to the scarcity of Wii modchips.

schizowitagun commented 5 months ago

Any updates? Is anyone working on this anymore? I'm willing to actually pay money to have someone try and fix this bug.