Wack0 / batondrop_armv7

An implementation of baton drop (CVE-2022-21894) for armv7 (MSM8960)
The Unlicense
11 stars 4 forks source link

Dell XPS 10 #2

Open Ryanclow112 opened 4 months ago

Ryanclow112 commented 4 months ago

Hi! So, i made usb stick place all files on it, boot and got "baton drop [EMS Enable]", click on it, system reboots, then i got "baton drop into efi payload" and that all... When i press "F8" i can make some choice, but when it reboots i got "baton drop into efi payload".. Mb i doing something wrong or what?

Wack0 commented 4 months ago

the example payload seems to be running successfully, so you can replace it with a different ARMv7 .efi file

Ryanclow112 commented 4 months ago

sorry if i ask noob questions, but i wanna understand.. i replace boot.efi form yours image.7z with bootarm.efi from mine efi folder, rename it to boot.efi and power it, click on baton drop, it reboots, i see some text, then just black screen or how i need it work with mine winrt?

Wack0 commented 4 months ago

You'd probably want to patch bootarm.efi to use some other BCD file and to remove signature checks, loading Secure Boot Policy, etc. Using a stock bootmgfw would be pointless of course!

Ryanclow112 commented 4 months ago

Some EFI's if i try got post code 0x0221 or "has incorrect subsystem value 16 (expected: 10-13)"