Jailbreak

From The iPhone Wiki
Revision as of 22:19, 7 July 2011 by 5urd (talk | contribs) (Jailbreak Tools: added links on iph1,2 and iph2,1)
Jump to: navigation, search

This is the process by which full execute and write access is obtained on all the partitions of the iPhone. It is done by patching /etc/fstab to mount the System partition as read-write. This is entirely different from an unlock. Jailbreaking is the first action that must be taken before things like unofficial activation (hacktivation), and unofficial unlocking can be applied.

The original jailbreak also included modifying the AFC service (used by iTunes to access the filesystem) to give full filesystem access from root. This was later updated to create a new service (AFC2) that allows access to the full filesystem.

Modern jailbreaks also include patching the kernel to get around code signing and other restrictions.

Exploits which were used in order to jailbreak 1.x

1.0.2

  • Restore Mode (iBoot had a command named cp, which had access to the whole filesystem)

1.1.1

1.1.2

  • Mknod (an upgrade jailbreak)

1.1.3 / 1.1.4 / 1.1.5

Exploits which are used in order to jailbreak 2.0+

Userland (used for all devices)

iPhone / iPhone 3G / iPod touch

iPod touch 2G

iPhone 3GS

iPod touch 3G

Apple TV 2G / iPad / iPhone 4 (GSM and CDMA models) / iPod touch 4G

Jailbreak Tools

Apple TV 2G

NOTE: The version on the right is what the Apple TV reports on TV while the left is the true version.

Jailbreak Tool Works with firmware...
4.1/4.0 4.2/4.1 4.2.1/4.1.1 4.3/4.2 4.3/4.2.1 4.3/4.2.2
limera1n no package management GUI No No No No No
sn0wbreeze no package management GUI No No No 2.5-2.7.1 No
greenpois0n no package management GUI No RC6-RC6.1 No No No
PwnageTool no package management GUI Restore from a custom firmware with unofficial bundle1 4.2 No 4.3-4.3.3.1 4.3-4.3.3.12
Seas0nPass No No Yes No 0.7.4 (Mac)

0.3.7 (Windows)

No
redsn0w No No No No 0.9.6rc16 No

1 Tethered jailbreak.
2 User needs to manually add PwnageTool firmware bundle into application.

iPad

Jailbreak Tool Works with firmware...
3.2 3.2.1 3.2.2 4.2.1 4.3 4.3.1 4.3.2 4.3.3
Spirit Yes No No No No No No No
Star Yes Yes No No No No No No
limera1n No No Yes No No No No No
greenpois0n No No RC4 RC5-RC6.1 No No No No
redsn0w No No 0.9.6b2-0.9.6rc16 0.9.6b41-0.9.6rc16

or 0.9.7b61 2

0.9.6rc91-0.9.6rc161 0.9.6rc91-0.9.6rc16 0.9.6rc131-0.9.6rc16 0.9.6rc16
PwnageTool No No 4.1-4.1.3 4.2 No 4.3 4.3.2 4.3.3-4.3.3.1
sn0wbreeze No No 2.1 2.2 2.3b41 2.5 2.6-2.6.1 2.7-2.7.1
Saffron No No No No Yes Yes Yes Yes

1 Tethered jailbreak.
2 If SHSHs were saved for iOS 4.2b3 and if you have a developer access to its IPSW, Jailbreak Monte can be used.

iPad 2

Jailbreak Tool Works with firmware...
4.3 4.3.1 4.3.2 4.3.3
Saffron Yes No No Yes

iPhone

Jailbreak Tool Works with firmware...
1.0.0 1.0.1 1.0.2 1.1.1 1.1.2 1.1.3 1.1.4 2.0 2.0.1 2.0.2 2.1 2.2 2.2.1 3.0 3.0.1 3.1 3.1.2 3.1.3
iBrickr 0.5-0.91 0.5-0.91 0.6-0.91 No No No No No No No No No No No No No No No
AppTapp Installer Yes Yes Yes No No No No No No No No No No No No No No No
AppSnapp No No No Yes No No No No No No No No No No No No No No
OktoPrep No No No No Update from jailbroken 1.1.1 No No No No No No No No No No No No No
Soft Upgrade No No No No No Update from jailbroken 1.1.2 No No No No No No No No No No No No
ZiPhone No No No No No Yes Yes No No No No No No No No No No No
iLiberty / iLiberty+ No No No No No Yes Yes No No No No No No No No No No No
QuickPwn No No No No No No No Yes Yes Yes Yes Yes Yes No No No No No
PwnageTool No No No No No No 1.1.4 2.0/2.0.3 2.0.1/2.0.3 2.0.2/2.0.3 2.1 2.2 2.2.5 3.0 No 3.1/3.1.3 3.1.4 3.1.5
redsn0w No No No No No No No No No No No No No 0.9.3 0.9.3 0.9.3 0.9.3 0.9.4
Star No No No No No No No No No No No No No No No No Yes Yes
blackra1n No No No No No No No No No No No No No No No Yes Yes No
purplera1n No No No No No No No No No No No No No Yes No No No No

iPhone 3G

Jailbreak Tool Works with firmware...
2.0 2.0.1 2.0.2 2.1 2.2 2.2.1 3.0 3.0.1 3.1 3.1.2 3.1.3 4.0 4.0.1 4.0.2 4.1 4.2.1

This table needs to be completed.

iPhone 3GS

Jailbreak Tool Works with firmware...
3.0 3.0.1 3.1 3.1.2 3.1.3 4.0 4.0.1 4.0.2 4.1 4.2.1 4.3 4.3.1 4.3.2 4.3.3
purplera1n Yes No No No No No No No No No No No No No
redsn0w 0.8 0.8 0.9.21 or 0.9.31 0.9.21 or 0.9.31 No No No No 0.9.6b2-0.9.6rc16 0.9.6b41-0.9.6rc16 0.9.6rc91-0.9.6rc161 0.9.6rc91-0.9.6rc16 0.9.6rc131-0.9.6rc16 0.9.6rc16
blackra1n No No Yes1 Yes1 No No No No No No No No No No
Spirit No No No Yes Yes No No No No No No No No No
Star No No No Yes Yes Yes Yes No No No No No No No
PwnageTool No No Restore from a custom firmware2 3.1.42 Restore from a custom firmware2 Restore from a custom firmware with unofficial firmware bundle2 4.1-4.1.3 4.2 4.21 3 4.3 4.3.2 4.3.3-4.3.3.1
sn0wbreeze No No No 2.0.21 2 2.0.21 2 2.0.21 2 2.0.21 2 2.1 2.2 2.3b41 2.5 2.6-2.6.1 2.7-2.7.1
limera1n No No No No No Yes Yes Yes Yes No No No No No
greenpois0n No No No No No No No No RC4 RC6.1 No No No No
Saffron No No No No No No No No No No Yes Yes Yes Yes

1 Tethered jailbreak on devices with the new bootrom.
2 Only applicable for devices with the old bootrom. Requires the device to have signature checks disabled (pwned).
3 Requires an unofficial firmware bundle.

iPhone 4 (GSM model)

Jailbreak Tool Works with firmware...
4.0 4.0.1 4.0.2 4.1 4.2.1 4.3 4.3.1 4.3.2 4.3.3
Star Yes Yes No No No No No No No
limera1n Yes Yes Yes Yes No No No No No
greenpois0n No No No RC4 RC5-RC6.1 No No No No
redsn0w No No No 0.9.6b2-0.9.6rc16 0.9.6b41-0.9.6rc16

or 0.9.7b61 2

0.9.6rc91-0.9.6rc161 0.9.6rc91-0.9.6rc16 0.9.6rc131-0.9.6rc16 0.9.6rc16
PwnageTool No No No 4.1-4.1.3 4.2 4.21 3 4.3 4.3.2 4.3.3-4.3.3.1
sn0wbreeze No No No 2.1 2.2 2.3b41 2.5 2.6-2.6.1 2.7-2.7.1
Saffron No No No No No Yes Yes Yes Yes

1 Tethered jailbreak.

2 If SHSHs were saved for iOS 4.2b3 and if you have a developer access to its IPSW, Jailbreak Monte can be used.

3 Requires an unofficial firmware bundle

iPhone 4 (CDMA model)

Jailbreak Tool Works with firmware...
4.2.5 4.2.6 4.2.7 4.2.8
greenpois0n No RC6.1 No No
PwnageTool No 4.2 No No
redsn0w No 0.9.6rc9-0.9.6rc16 No 0.9.6rc18
sn0wbreeze No 2.2 2.6-2.6.1 2.7-2.7.1
Saffron No Yes Yes Yes

iPod touch

Jailbreak Tool Works with firmware...
1.1 1.1.1 1.1.2 1.1.3 1.1.4 1.1.5 2.0 2.0.1 2.0.2 2.1 2.2 2.2.1 3.0 3.1 3.1.2 3.1.3
AppSnapp No Yes No No No No No No No No No No No No No No
OktoPrep No No Update from jailbroken 1.1.1 No No No No No No No No No No No No No
Soft Upgrade No No No Update from jailbroken 1.1.2 No No No No No No No No No No No No
ZiPhone No No No Yes Yes Yes No No No No No No No No No No
iLiberty / iLiberty+ No No No Yes Yes Yes No No No No No No No No No No
QuickPwn No No No No No Yes Yes Yes Yes Yes Yes No No No No No
PwnageTool No No No No 1.1.4 No 2.0/2.0.3 2.0.1/2.0.3 2.0.2/2.0.3 2.1 2.2 2.2.5 3.0 3.1/3.1.3 3.1.4 3.1.5
redsn0w No No No No No No No No No No No 0.9.3 0.9.3 0.9.3 0.9.3 0.9.4
Star No No No No No No No No No No No No No No Yes Yes
blackra1n No No No No No No No No No No No No No Yes Yes No
purplera1n No No No No No No No No No No No No Yes No No No

iPod touch 2G

This table needs improvement. (Particularly, information for redsn0w and anything notable for 2.x.)

Jailbreak Tool Works with firmware...
2.1.1 2.2 2.2.1 3.0 3.1.1 3.1.2 3.1.3 4.0 4.0.2 4.1 4.2.1
purplera1n No No No Yes1 No No No No No No No
blackra1n No No No No Yes3 Yes3 No No No No No
PwnageTool No No No No 3.1.32 3.1.41 3.1.51 4.01/4.011 No No No
redsn0w Tethered1 No No 0.9.21/0.9.31 0.9.21/0.9.31 0.9.21/0.9.31 0.9.41 0.9.5b3/0.9.6b31 0.9.5b3/0.9.6b31 0.9.6b13/0.9.6rc181 0.9.6b41/0.9.6rc181
Star No No No No No Yes Yes Yes No No No
greenpois0n No No No No No No No No No RC4 RC5/RC6.1

1 Only applicable for devices with the old bootrom.

2 Only applicable for devices with the old bootrom. Requires the device to have signature checks disabled (pwned).

3 Tethered jailbreak on devices with the new bootrom.

iPod touch 3G

Jailbreak Tool Works with firmware...
3.1.1 3.1.2 3.1.3 4.0 4.0.2 4.1 4.2.1 4.3 4.3.1 4.3.2 4.3.3
blackra1n Yes1 Yes1 No No No No No No No No No
redsn0w 0.9.31 0.9.31 No No No 0.9.6b2-0.9.6rc16 0.9.6b41-0.9.6rc16 0.9.6rc91-0.9.6rc161 0.9.6rc91-0.9.6rc16 0.9.6rc131-0.9.6rc16 0.9.6rc16
Spirit No Yes Yes No No No No No No No No
Star No Yes Yes Yes No No No No No No No
sn0wbreeze No 2.0.21 2.0.21 2.0.21 2.0.21 2.1 2.2 2.3b41 2.5 2.6-2.6.1 2.7-2.7.1
limera1n No No No Yes Yes Yes No No No No No
greenpois0n No No No No No RC4 RC5-RC6.1 No No No No
PwnageTool No No No No No 4.1-4.1.3 4.2 No 4.3 4.3.2 4.3.3-4.3.3.1
Saffron No No No No No No No Yes No Yes Yes

1 Tethered jailbreak.

iPod touch 4G

Jailbreak Tool Works with firmware...
4.1 (both builds) 4.2.1 4.3 4.3.1 4.3.2 4.3.3
limera1n Yes No No No No No
greenpois0n RC4 RC5/RC6.1 No No No No
PwnageTool 4.1/4.1.3 4.2 No 4.3 4.3.2 4.3.3/4.3.3.1
sn0wbreeze 2.1 2.2 2.3b41 2.5 2.6/2.6.1 2.7/2.7.1
redsn0w 0.9.6b2/0.9.6rc18 0.9.6b41/0.9.6rc18

or 0.9.7b61 2

0.9.6rc91/0.9.6rc18 0.9.6rc91/0.9.6rc18 0.9.6rc131/0.9.6rc18 0.9.6rc15/0.9.6rc18
Saffron No No Yes Yes Yes Yes

1 Tethered jailbreak.

2 If SHSHs were saved for iOS 4.2b3 and if you have a developer access to its IPSW, Jailbreak Monte can be used.