libwebp vulnerability - does it exist in the Switch and can it be exploited?

Arumaruma

New Member
OP
Newbie
Joined
Sep 27, 2023
Messages
1
Trophies
0
Age
25
XP
22
Country
United Kingdom
So a critical vulnerability in a library called libwebp has appeared. Seems like a pretty big deal. It's already fixed in major browsers but the Switch hasn't had an update yet since it was found. I wonder if it can be played around with in the Switch browser?
 

SylverReZ

The planet is fine. The people are crazy.
Member
Joined
Sep 13, 2022
Messages
7,340
Trophies
3
Location
The Wired
Website
m4x1mumrez87.neocities.org
XP
22,629
Country
United Kingdom
So a critical vulnerability in a library called libwebp has appeared. Seems like a pretty big deal. It's already fixed in major browsers but the Switch hasn't had an update yet since it was found. I wonder if it can be played around with in the Switch browser?
This is a very interesting discovery, similar to browserhax on the 3DS. Perhaps another softmod for the Switch without RCM?
 
  • Like
Reactions: jeffyTheHomebrewer

PTwr

Member
Newcomer
Joined
Dec 5, 2013
Messages
9
Trophies
0
Age
55
XP
102
Country
Afghanistan
You might be onto something! Maybe through some DNS server we could redirect the switch's browser applet to a custom website/page with a malformed webp image and use that to somehow get CFW running?
There is DNS hack to open built-in crappy browser on Switch, but its some half useless obsolete crap.
 

E1ite007

wierd avatar guy
Member
Joined
Nov 19, 2016
Messages
1,040
Trophies
1
Location
Itchy & Scratchy Land
XP
2,795
Country
Mexico
Considering it causes a heap-based buffer overflow, yes it could be posible to load unauthorized code, but I doubt it would work by itself since it would load on Horzion OS, where most piracy protections are already loaded and working. It would need a way to bypass all the security measures after a reboot to enable homebrew and piracy.

It could be the begining of something.
 
  • Like
Reactions: jeffyTheHomebrewer

masagrator

The patches guy
Developer
Joined
Oct 14, 2018
Messages
6,307
Trophies
3
XP
12,100
Country
Poland
Buffer overflow in Switch browser will cause crash. Simple as that.

You cannot execute code in HOS without setting used memory region as executable. And to do that it requires certain permissions that Switch's web browser doesn't have since Pegascape was patched.

So maybe someone will discover new softmod, but it won't work on newer FWs than PegaScape already supports.
 

linuxares

The inadequate, autocratic beast!
Global Moderator
Joined
Aug 5, 2007
Messages
13,380
Trophies
2
XP
18,302
Country
Sweden
Buffer overflow in Switch browser will cause crash. Simple as that.

You cannot execute code in HOS without setting used memory region as executable. And to do that it requires certain permissions that Switch's web browser doesn't have since Pegascape was patched.

So maybe someone will discover new softmod, but it won't work on newer FWs than PegaScape already supports.
They really learned. I don't dare to think how the next Switch will ne
 

Morricorne

Well-Known Member
Member
Joined
Jun 14, 2019
Messages
295
Trophies
0
Age
32
Location
Łódź
XP
846
Country
Poland
They hack Switch with browser exploit sooner or later. But i think after new Nintendo console release. Nobody risk show new exploit. When Nintendo is still closely watching switch homebrew scene.
 

RednaxelaNnamtra

Well-Known Member
Member
Joined
Dec 8, 2011
Messages
1,210
Trophies
1
XP
3,368
Country
Germany
They hack Switch with browser exploit sooner or later. But i think after new Nintendo console release. Nobody risk show new exploit. When Nintendo is still closely watching switch homebrew scene.
The main problem is not the entry point though, the main problem is the kernel or trustzone, which both don't seem to contain any exploitable flaws.
Keep in mind that those two are the main parts of the os we want for CFW, without them not CFW.
Those two parts are also very small code wise, and only do what they need to, which makes it actually possible for developers to actually know all the code and keep it secure.
So unless by some miracle nintendo adds a big bug in a future version, its unlikely we will get anywhere, even if we find a browser exploit as entry point to trigger other exploits and get more access. So software only exploits are unlikely.
But yeah, even if someone found something, it would be much smarter to wait for the follow up console to have a starting point there.
 
  • Like
Reactions: Morricorne

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • The Real Jdbye @ The Real Jdbye:
    @SylverReZ if you could find a v5 DS ML you would have the best of both worlds since the v5 units had the same backlight brightness levels as the DS Lite unlockable with flashme
  • The Real Jdbye @ The Real Jdbye:
    but that's a long shot
  • The Real Jdbye @ The Real Jdbye:
    i think only the red mario kart edition phat was v5
  • BigOnYa @ BigOnYa:
    A woman with no arms and no legs was sitting on a beach. A man comes along and the woman says, "I've never been hugged before." So the man feels bad and hugs her. She says "Well i've also never been kissed before." So he gives her a kiss on the cheek. She says "Well I've also never been fucked before." So the man picks her up, and throws her in the ocean and says "Now you're fucked."
    +2
  • BakerMan @ BakerMan:
    lmao
  • BakerMan @ BakerMan:
    anyways, we need to re-normalize physical media

    if i didn't want my games to be permanent, then i'd rent them
    +1
  • BigOnYa @ BigOnYa:
    Agreed, that why I try to buy all my games on disc, Xbox anyways. Switch games (which I pirate tbh) don't matter much, I stay offline 24/7 anyways.
    +1
  • AncientBoi @ AncientBoi:
    I don't pirate them, I Use Them :mellow:. Like I do @BigOnYa 's couch :tpi::evil::rofl2:
    +1
  • cearp @ cearp:
    @BakerMan - you can still "own" digital media, arguably easier and better than physical since you can make copies and backups, as much as you like.

    The issue is DRM
    +1
  • cearp @ cearp:
    You can buy drm free games / music / ebooks, and if you keep backups of your data (like documents and family photos etc), then you shouldn't lose the game. but with a disk, your toddler could put it in the toaster and there goes your $60

    :rofl2:
  • cearp @ cearp:
    still, I agree physical media is nice to have. just pointing out the issue is drm
    +1
  • rqkaiju2 @ rqkaiju2:
    i like physical media because it actually feels like you own it. thats why i plan on burning music to cds
  • cearp @ cearp:
    It's nice to not have to have a lot of physical things though, saves space
    +1
  • AncientBoi @ AncientBoi:
    Nor clothes 🤮 . Saves on time, soap, water and money having to wash them. :D
  • SylverReZ @ SylverReZ:
    @rqkaiju2, Physical media is a great source for archiving your data, none of that cloud storage shiz.
    +1
  • AncientBoi @ AncientBoi:
    [squeezes @SylverReZ onto a physical media, then archives you in my old stuff box] :tpi::rofl2::tpi:
    +1
  • BakerMan @ BakerMan:
    guys, should i change my pfp to one of these or keep it the same?
    iu

    iu

    (i guess i could change it to one of my other pfps too, but i just want to see what you guys think first)
  • SylverReZ @ SylverReZ:
    @BakerMan, Up to you.
  • BakerMan @ BakerMan:
    smug sonic time lmao
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Chronic The HempHog
    SylverReZ @ SylverReZ: https://www.youtube.com/watch?v=EtapU5nI6G4 +1