Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 4986] New: ldap disector shows wrongly Packet size limited

Date: Wed, 7 Jul 2010 05:29:11 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4986

           Summary: ldap disector shows wrongly Packet size limited during
                    capture
           Product: Wireshark
           Version: unspecified
          Platform: Other
        OS/Version: Ubuntu
            Status: NEW
          Severity: Normal
          Priority: Low
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: martin@xxxxxxxxxxx


Build Information:
wireshark 1.2.9

Copyright 1998-2010 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled with GTK+ 2.20.1, (32-bit) with GLib 2.24.1, with libpcap 1.0.0, with
libz 1.2.3.3, with POSIX capabilities (Linux), with libpcre 7.8, with SMI
0.4.8,
with c-ares 1.7.0, with Lua 5.1, with GnuTLS 2.8.5, with Gcrypt 1.4.4, with MIT
Kerberos, with GeoIP, with PortAudio V19-devel (built Feb 18 2010 22:31:30),
without AirPcap.

Running on Linux 2.6.32-23-generic, with libpcap version 1.0.0, GnuTLS 2.8.5,
Gcrypt 1.4.4.

Built using gcc 4.4.3.

--
Hi,

while analysing LDAP traffic. I came across a ladp.addRequest which spans over
two ethernet frames. 

The ldap.addRequest is not correctly decoded and chopped of. So only the first
bigger part is decoded and [Packet size limited during capture] is thrown.

Having the same ldap.addRequest captured on a network which has VLAN tagging
on. Shows the ldap.addRequest correctly.

Kind Regards
Martin

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.