Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 6602] Spoolss

Date: Mon, 21 Nov 2011 10:59:32 -0800 (PST)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=6602

--- Comment #1 from Guy Harris <guy@xxxxxxxxxxxx> 2011-11-21 10:59:32 PST ---
I'm running a recent build from the trunk, and the first frame doesn't show up
as malformed.

However, there's a bunch of stuff after the \spoolss path in the NT Create AndX
request that looks like the begining of a second SMB request; the second and
third frames are messed up because they have zero as the Ethernet type.

How was this network trace captured?

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are watching all bug changes.