Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 3134] New: DHCPv6 decode of solicit/request gives 'malform

Date: Wed, 17 Dec 2008 12:20:24 -0800 (PST)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3134

           Summary: DHCPv6 decode of solicit/request gives 'malformed
                    packet' when decoding either FQDN or perhaps vendor-
                    class option
           Product: Wireshark
           Version: 1.1.x (Experimental)
          Platform: PC
        OS/Version: Windows XP
            Status: NEW
          Severity: Normal
          Priority: Medium
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: kfall@xxxxxxxxxxxxxxx


Created an attachment (id=2579)
 --> (https://bugs.wireshark.org/bugzilla/attachment.cgi?id=2579)
trace taken with tcpdump capturing 1500B pkts on local wireless LAN showing
IPv6 ND and DHCPv6 traffic (malformed DHCPv6 solicit & request pkts)

Build Information:
Version 1.1.2-SVN-27037 (SVN Rev 27037)

Copyright 1998-2008 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled with GTK+ 2.14.5, with GLib 2.18.3, with WinPcap (version unknown),
with libz 1.2.3, without POSIX capabilities, with libpcre 7.0, with SMI 0.4.8,
with c-ares 1.6.0, with Lua 5.1, with GnuTLS 2.6.3, with Gcrypt 1.4.3, with MIT
Kerberos, without GeoIP, with PortAudio V19-devel (built Dec 17 2008), with
AirPcap.

Running on Windows XP Service Pack 3, build 2600, with WinPcap version 4.0.2
(packet.dll version 4.0.0.1040), based on libpcap version 0.9.5, without
AirPcap.

Built using Microsoft Visual C++ 9.0 build 30729

Wireshark is Open Source Software released under the GNU General Public
License.

Check the man page and http://www.wireshark.org for more information.
--
This also happens with version release version 1.0.5.  The following trace file
decodes w/out error using tcpdump, but trips on malformed packet with WS.  I
haven't delved into the byte level (yet anyhow) to see if it is truly
malformed, but the dhcpv6 client is Vista/SP1, so I'd be a a bit surprised if
it really is malformed...


-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.