Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 10300] New: Dissector error - PPP/TCP/SSL

Date: Wed, 23 Jul 2014 07:51:49 +0000
Bug ID 10300
Summary Dissector error - PPP/TCP/SSL
Classification Unclassified
Product Wireshark
Version 1.10.8
Hardware x86-64
OS Windows 8.1
Status UNCONFIRMED
Severity Major
Priority Low
Component Dissection engine (libwireshark)
Assignee [email protected]
Reporter [email protected]

Created attachment 12918 [details]
pcap file

Build Information:
Version 1.10.8 (v1.10.8-2-g52a5244 from master-1.10)
--
There is some dissector error in this version of wireshark.  My coworker
reported he is also having the same error in v1.6.14 so it looks like it has
been there a while.

If you load the PCAP in wiireshark version 1.6.2 (Version 1.6.2 (SVNRev 38931
from /trunk-1.6)

Goto packet 10 and decode as SSL
Filter for SSL and you will notice a failed SSL communication.

Do the same thing in version 1.10.8 and you will only find the "Server Hello"

Sorry I am not an expert at this and cannot isolate it much further than this
but clearly something is not right.

I also compared my settings for each protocol in these packets for 1.6.2 and
1.10.8 and tried to make them as alike as possible.  But no resolve.


You are receiving this mail because:
  • You are watching all bug changes.