first step to pwn the lv0 |xø??H??|! x???/ ??@?ÿø|cxãûx8??Kÿÿ¹`???/£??@?ÿØL?,è??ëá?x8!??|¦N?? 8??????Kÿÿ?????CV : error : invalid spu id ????CV : error : not normal state ??CV >>>>>>>>>> run_isolated_spu_module ??CV : error : invalid spu status ????????CV : error : tranlate to exit state ????CV >>>>>>>>>> run_isolated_spu_module finished. ????????CV : error : not load state ????CV : error : transit isolated state fail ???????CV : >>>>>> EXIT_COMPLETE ?????CV : >>>>>> *** NOT *** EXIT_COMPLETE >> ERR_INTERNAL ?CV ********** STOP CODE : [%d] ?CV : handle_stop_and_signael : REVOKE_LIST_AUTH_COMPLETE ???????CV : restore MFC SR1 val ???????CV >>>>>> spu_interrupt_handler_class0 ?CV : error invalid spu id ??????CV : error : interrupt not occured. ????CV >>>>>> spu_interrupt_handler_class0 finished. ???????CV >>>>>>>>>>> terminate_isolated_spu ??CV : error : already normal state ??????CV : error : stop isolated spu fail ????CV >>>>>>>>>>> terminate_isolated_spu finished. ????????CV : error : send_64bit ????????CV >>>>>> install_revoke_list ??CV : error: install_revoke_list check param NG. ????????CV : error : get_meta_loader ???CV : error : get_lv2_loader : [%d] ?????CV : error : set_secloader_and_self_address_to_mailbox ?CV : error : tranlated isolated state ??CV >>>>>> install_revoke_list finished. ????????CV >>>>>>>>> authenticate_lv2 ??CV : error [%d] : get_lv2_loader ???????CV >>>>>>>>>>> authenticate_isolated_spu_module ???????CV : error : get_iso_loader ????CV >>>>>>>>>>> authenticate_isolated_spu_module finished. ?????CV >>>>>>>>> authenticate_program_segment ??????spu_id : [%d] ??program_auth_id : [0x%llx] ?????lpar_auth_id : [0x%llx] ????????self_header_addr : [0x%llx] ????program_segment_addr : [0x%llx] ????????program_segment_index : [0x%llx] ???????destination_addr : [0x%llx] ????capability_addr : [0x%llx] ?????flag : [0x%llx] ????????CV : error : get_meta_loader : [%d] ????CV : error : get_appli_loader : [%d] ???CV : error : set secloader and self addr to mailbox ????CV : error : transform ?CV >>>>>>>>> authenticate_program_segment finished. ????CV >>>>>>>>>> authenticate_lv1 ?CV : error : get_lv1_loader ????CV : error : translated isolated spu ???CV >>>>>>>>>> authenticate_lv1 finished. ???????code_verifier::get_qa_flag from eeprom fail ????CV : secure_loader::SECURE_LOADER_READY ????????CV : get QAFlag fail ???CV : error : mailbox is not ????CV : error : mailbox is not SECURE LOADER READY : msg : %d ?????CV : secure_loader::ISOLATED_SPU_MODULE_READY ??CV : ISOLATED SPU MODULE READY : msg : %d ??????CV : int mail receive error ???CV : ===== >> %s : %d ?CV : error : spu is normal state ???????CV : int_status : 0x%llx ???????CV : ack_bitmap : 0x%llx ???????CV : act_for_secldr : 0x%llx ???CV : act_for_isomdl : 0x%llx ???CV : spu_interrupt_handler_class2 finished. ????spu_interrupt_handler_class2????load_component (%d, %s, 0x%llx) ????????load_persistent_component: %s not found %d ?????load_component () ??????ERROR: m_comp_table_num %d > max %d ????component_manager::initialize: fail %d ?ERROR: get_component: m_storage null ??????????????????????????????Cok?????Cyt3????Cyt2????Shr?????Cyt1????ros?????sdk_version?????os??????image.bin???????PX::EBCADMATCH%d %08x ??PX::EBCACCTRL%d %08x ???PX::EBCADBS%d %08x ?????read_composite_region_header: result %d ????????read_composite_region_header: read_size %lld ???found offset %08llx m_region_id %lld, m_offset %08x, m_size %08x ???????read_composite_region_header fail ??????find_component %s fail ?rrh.m_region_num %u, rrh.m_region_size %u ??????find_component %lld fail ???????rre.m_offset %u, rre.m_size %u ?load_components %lld fail ??????load_components %lld too large. ????????load_components %lld success ???load_components %s too large. ??eEID????flash_format_1_component_loader: unknown component_id=%d ??????????????????????????????????????????????????get_file????????[WARN]:%s debug_interface_%d ???[WARN]:%s get_file ?????[WARN]:%s put_file ?????[WARN]:%s get_file_size ????????put_file????????get_file_size???invalidate4_iopt_cache fail %d ?iost_addr is not aligned 4KB %08llx ????iopt_addr is not aligned 4KB %08llx ????%s: allocate_iost_entry fail %d ????????%s: ea_addr is not aligned by page_size in byte ????????%s: invalid ea_size < page size in byte ????????%s: iopt_entry_num > %d ????????%s: allocate_iopt_entry fail %d ????????%s: invalid page_size ??allocate_io_address?????start_isolated_state????%s %d : status[%08x] ???err [%d] ???????status : load[%d] ??????status : isolated[%d] ??status : exit[%d] ??????status : normal[%d] ????create_alt_sys_parm?????%s: parm_name too long ?%s = 0x%llx ????%s: alt_sys_parm full ??%s??????be.0.bp_base????be.0.ioif0.addr?be.0.ioif1.addr?be.0.nclk???????be.0.ref_clk????be.0.spu.faultbm????????be.0.tb_clk?????mu.1.size???????plat.id?sys.load.image.in_rom???sys.rom.addr????[ERROR]: invalid debug_interface was selected ??sys.dbgcard.dgbe????????sys.dbgcard.hostpc??????sys.dbgcard.dgbe.index??sys.dgbe.ipaddr?sys.dgbe.netmask????????sys.dgbe.gateway????????spider.gbe0.macaddr.0???spider.gbe0.macaddr.1???spider.gbe0.macaddr.2???spider.gbe0.macaddr.3???sys.platform.mode???????sys.mambo.version???????sys.syscon.protocol_version?????rsx.rdcy.%d?????3.7.4???sys.lv0.version?822?????sys.lv0.revision????????sys.lv0.address?sys.lv0.size????sys.flash.fmt???sys.wake_source?sys.ac.sd???????sys.qaf.qafen???sys.gxenable????parm_hdr.m_revision %08x ??parm_hdr.m_size %08x ??parm_hdr.m_reserved %016llx ???????parm_hdr.m_user_parm_address %016llx ???????parm_hdr.m_user_parm_size %016llx ???????parm_hdr.m_system_parm_address %016llx ???????parm_hdr.m_system_parm_size %016llx ???????parm_hdr.m_imagebin_address %016llx ???????parm_hdr.m_imagebin_size %016llx ???????parm_hdr.m_internal_parm_address %016llx ???????parm_hdr.m_internal_parm_size %016llx ???????parm_hdr.m_alt_sys_parm_address %016llx ???????parm_hdr.m_alt_sys_parm_size %016llx ???????split_to_word %s, %s ???string_to_ull %016llx ??%s: m_reading_point >= m_end_point ?????max_loop fail ??get_char fail ??[ERROR]: search_empty fail ?????%s: invalid arg %08llx, %08llx ?%s: invalid size %08llx ????????read_one_line %s ???????get_char????????parse_parameter?%s%s%s ?Boot Loader SE Version 3.7.3