Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 3509] Edonkey bug in dissecting UDP Get Gerver Info packet

Date: Wed, 13 Oct 2010 12:13:40 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3509

--- Comment #4 from Chris Maynard <christopher.maynard@xxxxxxxxx> 2010-10-13 12:13:38 PDT ---
(In reply to comment #3)
> But it's still a bug in edonkey dissector, reopening.

I don't know eDonkey either, but according to section 6.3.7 of the following
specification for eMule, the "Get Server Info" message type contains nothing
following the 1-byte protocol and 1-byte type fields.

http://www.cs.huji.ac.il/labs/danss/p2p/resources/emule.pdf

I know eMule isn't eDonkey, but it's the best specification I could find, and
according to section 1.6 of the above document, "eMule is completely compatible
with eDonkey".  I don't know how true that is, but assuming it is, then the
eDonkey dissector is attempting to dissect extraneous data.  Arguably the data
shouldn't be there at all, but the dissector shouldn't be choking on it if it
is.

Should the dissector be modified to avoid attempting to dissect that extra
information, or is there another, better specification for eDonkey with more
accurate/complete information that I'm missing?

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.