Wireshark-bugs: [Wireshark-bugs] [Bug 1025] New: dhcp packet crashes wireshark
Date Prev · Date Next · Thread Prev · Thread Next
Date: Tue, 1 Aug 2006 12:02:55 +0000 (GMT)
http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1025

           Summary: dhcp packet crashes wireshark
           Product: Wireshark
           Version: 0.99.0
          Platform: PC
        OS/Version: Windows XP
            Status: NEW
          Severity: Major
          Priority: Medium
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: nathan.scarlett@xxxxxxxxxxx


When viewing the following packet (dhcp offer) in the wireshark window,
wireshark always crashes.  This dhcp offer was sent by a custom dhcp server
perl script.  I got this hex dump by saving the wireshark capture without
clicking on the packet, then using tshark ( -x option) to print out the hex
bytes.

  2   0.007711 172.22.178.234 -> 10.10.8.240  DHCP DHCP Offer    - Transaction
ID 0x7771cf85

0000  00 e0 b1 49 39 02 00 13 72 25 fa cd 08 00 45 00   ...I9...r%....E.
0010  01 94 4f 92 00 00 80 11 77 cc ac 16 b2 ea 0a 0a   ..O.....w.......
0020  08 f0 00 43 00 43 01 80 72 0e 02 01 06 01 77 71   ...C.C..r.....wq
0030  cf 85 00 0a 00 00 00 00 00 00 0a 0a 08 eb ac 16   ................
0040  b2 ea 0a 0a 08 f0 00 0e 86 11 c0 75 00 00 00 00   ...........u....
0050  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0060  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0070  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0080  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0090  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00a0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00b0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00c0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00d0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00e0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
00f0  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0100  00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00   ................
0110  00 00 00 00 00 00 63 82 53 63 35 01 02 01 04 ff   ......c.Sc5.....
0120  ff ff 00 36 04 ac 16 b2 ea 33 04 00 00 a8 c0 03   ...6.....3......
0130  04 0a 0a 08 fe 06 08 8f d1 04 01 8f d1 05 01 42   ...............B
0140  0e 31 37 32 2e 32 32 2e 31 37 38 2e 32 33 34 78   .172.22.178.234x
0150  05 01 ac 16 b2 ea 3d 10 00 6e 61 74 68 61 6e 31   ......=..nathan1
0160  63 6c 69 65 6e 74 69 64 5a 1f 01 01 00 c8 78 c4   clientidZ.....x.
0170  52 56 40 20 81 31 32 33 34 8f e0 cc e2 ee 85 96   RV@ .1234.......
0180  ab b2 58 17 c4 80 b2 fd 30 52 16 01 14 20 50 4f   ..X.....0R... PO
0190  4e 20 31 2f 31 2f 30 37 2f 30 31 3a 31 2e 30 2e   N 1/1/07/01:1.0.
01a0  31 ff                                             1.



Error Dialog:
Runtime Error!
Program: C:\Program FIles\Ethereal\ethereal.exe
This application has requested the Runtime to terminate in an unusual way.
Please contact the application's support team for more information.



About Wireshark...
Version 0.99.2 (SVN Rev 18752)

Copyright 1998-2006 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled with GTK+ 2.6.9, with GLib 2.6.6, with WinPcap (version unknown),
with libz 1.2.3, with libpcre 6.4, with Net-SNMP 5.3.1, with ADNS, with Lua
5.1.

Running with WinPcap version 3.1 (packet.dll version 3, 1, 0, 27), based on
libpcap version 0.9[.x] on Windows XP S, build 2600.


-- 
Configure bugmail: http://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.