A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/3452696 |
|
History
Wed, 03 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | BD-J Sandbox Escape Privilege Escalation in PlayStation 4 Firmware 13.00-13.02 | |
| Weaknesses | CWE-269 |
Wed, 03 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-367 | |
| Metrics |
cvssV3_1
|
Wed, 03 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sony
Sony ps4 |
|
| Vendors & Products |
Sony
Sony ps4 |
Wed, 03 Jun 2026 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | BD-J Sandbox Escape Privilege Escalation in PlayStation 4 Firmware 13.00-13.02 | |
| Weaknesses | CWE-269 |
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file. | |
| References |
|
Status: PUBLISHED
Assigner: hackerone
Published: 2026-06-02T18:20:59.255Z
Updated: 2026-06-03T16:05:58.821Z
Reserved: 2025-10-31T15:00:01.446Z
Link: CVE-2025-64390
Updated: 2026-06-03T16:05:38.803Z
Status : Received
Published: 2026-06-02T20:16:31.517
Modified: 2026-06-03T18:16:18.937
Link: CVE-2025-64390
No data.