Wireshark-bugs: [Wireshark-bugs] [Bug 13052] SGASP malformed packet
Date: Thu, 27 Oct 2016 13:01:22 +0000

Comment # 8 on bug 13052 from
Ok , Thank you for your replay.
Only one question is this means that 2 bytes in NAS container  accept as junk
packet.
(In reply to Anders Broman from comment #7)
> (In reply to Nadia from comment #6)
> > OK, I understood. But there is no test equipment and this is a real traffic.
> > I have a question on following situation. In row  5 there also same messages
> > and NAS container seem to have the same parameters only the length is little
> > bit more. If this messages is junk why on the quotation row there no
> > malformed message? 
> > 
> > Thanks
> 
> Because in the first case with 2 byters of 0xff the information causes
> wireshark decoder to try to read a third byte which is not there. Which is
> handled in the patch I've made.


You are receiving this mail because:
  • You are watching all bug changes.