Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-bugs: [Wireshark-bugs] [Bug 3116] wrong decoding IMSI with GSM MAP protocol

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: bugzilla-daemon@xxxxxxxxxxxxx
Date: Wed, 4 Mar 2009 02:50:34 -0800 (PST)

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3116


trs80man@xxxxxxxxx changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |trs80man@xxxxxxxxx
             Status|RESOLVED                    |REOPENED
         OS/Version|Windows XP                  |Red Hat
         Resolution|FIXED                       |
            Version|1.0.5                       |1.0.6




--- Comment #3 from trs80man@xxxxxxxxx  2009-03-04 02:50:32 PDT ---
Even though the revision 27117 *may* have fixed the 2 digit MNC for GSM MAP, it
actually broke other code using the same function ie. dissect_e212_mcc_mnc() is
used by the BSSAP disector and it no longer correctly decodes the MNC
correctly. Wireshark 1.0.5 does. 

Several dissectors use this same function I don't know if any other dissectors
are affected.

As I understand it in BSSAP, if the MNC is only two digits then the other
nibble of the possible 3rd digit is 0xf which means to ignore it. I'm not sure
but I think MAP doesn't use this same scheme and would probably require a
dissector preference to handle the case where the MNC is only 2 digits.

I've locally reverted revision r27117 and it again works as expected for me.


-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.

  • Prev by Date: [Wireshark-bugs] [Bug 3302] Updated packet dissector for RTPS & RTPS 2 protocol
  • Next by Date: [Wireshark-bugs] [Bug 3300] Embedded RRC messages not dissected
  • Previous by thread: [Wireshark-bugs] [Bug 3302] Updated packet dissector for RTPS & RTPS 2 protocol
  • Next by thread: [Wireshark-bugs] [Bug 3009] new ismacryp dissector
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation