The OnePlus 2 Primary Bootloader (PBL) does not validate the SBL1 partition before executing it, although it contains a certificate. This allows attackers with write access to that partition to disable signature validation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Primary_bootloader | Oneplus | - (including) | - (including) |