Wireshark-bugs: [Wireshark-bugs] [Bug 4050] ISUP ACM with invalid packet is not identified as pr
Date: Fri, 16 Oct 2009 15:21:51 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4050


Jeff Morriss <jeff.morriss.ws@xxxxxxxxx> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|REOPENED                    |RESOLVED
         Resolution|                            |FIXED




--- Comment #8 from Jeff Morriss <jeff.morriss.ws@xxxxxxxxx>  2009-10-16 15:21:50 PDT ---
(In reply to comment #7)
> Jeff:
> 
> Should wireshark be able to detect this situation?  I mean right now it doesn't
> have a label and you can't even select it.  

Should it?  I suppose so, since Wireshark is used to troubleshoot problems.

The best way probably would for the SCTP dissector to detect that whatever
sub-dissector was called didn't consume all of the data handed to it, but we
don't have a method to do that (that I am aware of).

So I added a check in the M2PA dissector to add an item for such "extra" bytes
in rev 30585.  That'll show up in the next development release.


-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.