PlayStation 4 Privilege Escalation Vulnerability in BD-J Sandbox

Vulnerability

A privilege escalation vulnerability has been identified in PlayStation 4 firmware versions 13.00 through 13.02. This vulnerability allows an attacker to escape the BD-J (Blu-ray Disc Java) sandbox by using a malformed JAR file. The issue arises because the BD-J security policy improperly canonicalizes file paths, enabling untrusted code to be executed with elevated permissions.

Impact

Exploitation of this vulnerability allows for complete privilege escalation from a sandboxed Blu-ray application to full system access, with all permissions granted.

Reproduction

The vulnerability can be reproduced by creating a nested JAR file that exploits the path traversal vulnerability. When this JAR file is loaded by a Blu-ray application on a PlayStation 4 running the vulnerable firmware, the BD-J security policy will incorrectly grant all permissions, allowing the application to execute untrusted code with elevated privileges.

Added: Jun 2, 2026, 8:44 PM
Updated: Jun 2, 2026, 8:44 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
5.8
remediation
0.0
relevance
9.8
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.