Difference between revisions of "Bootrom"

From The iPhone Wiki
Jump to: navigation, search
(Check bootrom version)
(Check bootrom version)
Line 6: Line 6:
 
You might also be looking for [[iBoot (Bootloader)|Apple's stage 2 bootloader]], which also uses the "iBoot" name.
 
You might also be looking for [[iBoot (Bootloader)|Apple's stage 2 bootloader]], which also uses the "iBoot" name.
   
==Check bootrom version==
+
==Finding bootrom version==
 
===[[iPod Touch]] 2G===
 
===[[iPod Touch]] 2G===
To find out if your [[N72ap|iPod touch 2G]] has an old or new bootrom, the easiest way is to look at the model number. If the second character is "B" (as in "MB533" or "PB533"), your iPod has the old bootrom. If the second character is "C" (as in "MC086" or "PC086"), your iPod has the new bootrom.
+
If the second character of your Model Number is "B" (as in "MB533" or "PB533"), your iPod has the old bootrom. If the second character is "C" (as in "MC086" or "PC086"), your iPod has the new bootrom
  +
 
===[[iPhone 3GS]]===
 
===[[iPhone 3GS]]===
  +
====DFU Mode Method====
For a more sure-fire way of detecting the bootrom version, you must put your device into [[DFU Mode]]. Make sure it is '''not''' in [[Recovery Mode]], as Recovery Mode does not mention the bootrom version. If you have Mac OS X, go to System Profiler, and under the "Hardware" category, go to USB, and click on "Apple Mobile Device (DFU Mode)." If you have Windows, go to Device Manager, find USB controller, subitem Apple Mobile Device USB Driver. In Properties, Details, select Device Instance Path in the dropdown. The end of the info string will show the bootrom version.
 
  +
=====Windows=====
  +
# Enter [[DFU Mode]] & Connect Device
  +
# Open Device Manager, find USB controller, subitem Apple Mobile Device USB Driver
  +
# Right-Click & click Properties
  +
# Go to Details tab & select Device Instance Path in the dropdown box
  +
# The end of the info string will show the bootrom version
  +
  +
=====Mac OS X=====
  +
# Enter [[DFU Mode]] & Connect Device
  +
# Go to System Profiler, and under the Hardware category, go to USB, and click on Apple Mobile Device (DFU Mode)
  +
# The end of the info string will show the bootrom version
  +
  +
=====Linux=====
  +
# Install gnome-device-manager and start it
  +
# Enter [[DFU Mode]] & Connect Device
  +
# Search in the left tree-view for USB Device and look at Summary -> Model until it says Apple Mobile Device (DFU Mode)
  +
# If it does go to Properties (next to Summary) and search for usb_device.serial
  +
# The end of the String will show you the bootrom version
  +
   
  +
====Recovery Mode Method====
If you're on Linux and have a Desktop Environment setup, install gnome-device-manager and start it. Connect you're device in DFU Mode, search in the left tree-view for "USB Device" and look at Summary -> Model until it says "Apple Mobile Device (DFU Mode)". If it does go to Properties (next to Summary) and search for "usb_device.serial". The end of the String will show you the bootrom version.
 
   
 
== Revisions ==
 
== Revisions ==

Revision as of 11:45, 19 November 2010

Introduction / old+new

The bootrom (called "SecureROM" by Apple) is the first significant code that runs on an iDevice. The bootrom is unwritable. Finding exploits in the bootrom level is a big achievement since Apple won't be able to fix it without a hardware revision.

Certain models, including the iPod touch 2G and iPhone 3GS, have different bootrom versions. These are most commonly referred to with the terms "old bootrom" and "new bootrom." These "new bootrom" devices were released after 9 September 2009 and have the 0x24000 Segment Overflow fixed. While the new bootrom revisions have an exploit, the exploit needs the assistance of a firmware-based exploit to achieve an untethered jailbreak.

You might also be looking for Apple's stage 2 bootloader, which also uses the "iBoot" name.

Finding bootrom version

iPod Touch 2G

If the second character of your Model Number is "B" (as in "MB533" or "PB533"), your iPod has the old bootrom. If the second character is "C" (as in "MC086" or "PC086"), your iPod has the new bootrom

iPhone 3GS

DFU Mode Method

Windows
  1. Enter DFU Mode & Connect Device
  2. Open Device Manager, find USB controller, subitem Apple Mobile Device USB Driver
  3. Right-Click & click Properties
  4. Go to Details tab & select Device Instance Path in the dropdown box
  5. The end of the info string will show the bootrom version
Mac OS X
  1. Enter DFU Mode & Connect Device
  2. Go to System Profiler, and under the Hardware category, go to USB, and click on Apple Mobile Device (DFU Mode)
  3. The end of the info string will show the bootrom version
Linux
  1. Install gnome-device-manager and start it
  2. Enter DFU Mode & Connect Device
  3. Search in the left tree-view for USB Device and look at Summary -> Model until it says Apple Mobile Device (DFU Mode)
  4. If it does go to Properties (next to Summary) and search for usb_device.serial
  5. The end of the String will show you the bootrom version


Recovery Mode Method

Revisions

S5L8900, used in the iPhone, iPod touch 1G, and iPhone 3G

S5L8720, used in the iPod touch 2G

S5L8920, used in the iPhone 3GS

S5L8922, used in the iPod touch 3G

S5L8930, used in the iPad, iPhone 4, Apple TV 2G and iPod touch 4G