Wireshark-bugs: [Wireshark-bugs] [Bug 2272] DNS dissector incorrect when length field is in fram
Date: Mon, 18 Feb 2008 04:59:38 +0000 (GMT)
http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2272





--- Comment #2 from Stephen Fisher <stephentfisher@xxxxxxxxx>  2008-02-18 04:59:37 GMT ---
When I open your capture file in the latest released version of Wireshark
(0.99.7), it appears to be correctly interpreting the DNS segments.  Frame 6
shows that it has reassembled TCP Segments #4 (2 bytes) and #6 (43 bytes), the
length is shown as 43 (I suspect this is the length minus the length field,
which is 2 bytes) and the Reassembled TCP tab on the bottom of the hex pane
says Reassembled TCP (45 bytes).  Is yours showing something different in
0.99.6?  If so, can you try upgrading to 0.99.7 and see if that fixes the
problem?


-- 
Configure bugmail: http://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.