ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-bugs: [Wireshark-bugs] [Bug 4771] New: Wireshark 1.3.5 could crash when loading a capt

Date: Wed, 19 May 2010 05:56:28 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4771

           Summary: Wireshark 1.3.5 could crash when loading a capture
                    done an "any" interface
           Product: Wireshark
           Version: 1.3.x (Experimental)
          Platform: x86-64
        OS/Version: Windows 7
            Status: NEW
          Severity: Major
          Priority: Low
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: wireshark.jmdlpro@xxxxxxxx


Created an attachment (id=4663)
 --> (https://bugs.wireshark.org/bugzilla/attachment.cgi?id=4663)
Captured with "tcpdump -i any -s 0 -w connexion-ftp-admin.cap"

Build Information:
Version 1.3.5 (SVN Rev 32666 from /trunk)

Copyright 1998-2010 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled with GTK+ 2.16.6, (64-bit) with GLib 2.22.4, with WinPcap (version
unknown), with libz 1.2.3, without POSIX capabilities, without libpcre, without
SMI, with c-ares 1.7.1, with Lua 5.1, without Python, with GnuTLS 2.8.5, with
Gcrypt 1.4.5, without Kerberos, with GeoIP, with PortAudio V19-devel (built May 
4 2010), with AirPcap, with new_packet_list.

Running on 64-bit Windows 7, build 7600, with WinPcap version 4.1.1 (packet.dll
version 4.1.0.1753), based on libpcap version 1.0 branch 1_0_rel0b (20091008),
GnuTLS 2.8.5, Gcrypt 1.4.5, without AirPcap.

Built using Microsoft Visual C++ 9.0 build 30729
--
Wireshark 1.3.5 crashes when loading a capture done an "any" interface, and
that the "Hardware dest addr" was added as a column in the packet list. Same
issue with "Hw dest addr (resolved)" & "Hw dest addr (unresolved)" .
BTW, doesn't happen with v1.2.6, ie. the column is displayed, though empty.

Repro steps:
1. load attached capture done at one of our customer's, with the following
command line: "tcpdump -i any -s 0 -w connexion-ftp-admin.cap". It is very
likely that the capturing platform was a RedHat or RedHat base, thoug I can't
be sure.
2.1. if you already have any of the "hw dest" column set, crash will happen
immediately at opening time,
2.2. if you don't, just add one of them while the capture is still loaded,
crash will happen as soon as you press any of OK or Apply buttons.

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.