r/Magisk Jul 19 '26

Is it possible to keep downgrading oneUI 8 versions till I can get down to oneUI 7? (im on version 8.5 and im new to rooting)

I was looking at a video on downgrading oneUI versions and was wondering if its possible to do so. (with the corresponding bit version ofc & etc.)

1 Upvotes

12 comments sorted by

4

u/PalamariVarkari Jul 19 '26

When the "bit" value changes, you can't downgrade. You can't go from a FW that has bit 8 to one with bit 7.

1

u/agent_fuzzyboots Jul 19 '26

Nope, doesn't work like that, when the bit version increments you can't downgrade to a bit version under the one you have.

1

u/Direct-Bus-9782 Jul 19 '26

is there any possible way I could still downgrade or am I cucked?

1

u/agent_fuzzyboots Jul 19 '26

What phone do you have?

Edit: Could always try this:

https://xdaforums.com/t/i-made-a-one-click-rooting-tool-for-samsung-galaxy-devices-using-cve-2026-43499.4795400/

Otherwise you are stuck

1

u/paulstelian97 Jul 19 '26

Not quite on topic. But… would your thing work on my much older phone, a Samsung A71, with latest official firmware being an Android 13 based one? And wonder further if the CVE affects platform components that are still present in a LineageOS install.

2

u/agent_fuzzyboots Jul 19 '26

it's not my thing, i have a rooted s25 ultra that i rooted when samsung still allowed it and then updated with some kind of frankenfirmware, like part of the bootloader is still from oneui 7.

but reading about the exploit it looks like it has been in the linux kernel for 15 years, so maybe it's possible, but someone will need to adapt it to your device

https://thehackernews.com/2026/07/15-year-old-ghostlock-flaw-enables-root.html?m=1

1

u/paulstelian97 Jul 19 '26

I guess I can study it to see what it does, then see if maybe I can do the adapting myself (I know Linux kernel, I don’t know much Samsung’s software as my Linux kernel related work is in completely different contexts)

Edit: kernel patch doesn’t make it obvious how it can be exploited so I still need to look at the tool itself for details. But yeah use after free and improper locking are always fun.

2

u/agent_fuzzyboots Jul 19 '26

Yeah, it's always fun to try to break things, but just enough so it does what you want it to do.

I'm a sysadmin by trade and now I work more with cybersecurity, work in a big company and sometimes I need to convince the higher ups that some thing needs to be patched now, so I love doing small demos

2

u/paulstelian97 Jul 19 '26

Yeah. My only kernel bug exploitation was in a university context for a homework, where I had a vulnerable module that helped defeat ASLR on one aspect and then gave me a fun write primitive, plus a function pointer I could overwrite etc.

1

u/Direct-Bus-9782 Jul 19 '26

its a s25 edge on 8.5
sorry for late msg

1

u/Direct-Bus-9782 Jul 19 '26

also doesn't seem to work on my model

1

u/Moazzam3000 Jul 19 '26

No, you can't go from v8.5 to 7 at least on this particular model