|
![]() [ View full size screenshot ] |
| Version | Date Released | Status | Release Notes |
| 1.7.1 Dev | Apr 15, 2012 | New Release | Bug Fixes: The following bugs have been fixed: · Wireshark could crash while reading SSL decryption keys on 64-bit Windows. · Malformed Packets H263-1996 (RFC2190). (Bug 6996) · Wireshark could crash while trying to open an rpcap: URL. (Bug 6922) Updated Protocol Support: · H.263 Getting Wireshark: · Wireshark source code and installation packages are available from http://www.wireshark.org/download.html. Vendor-supplied Packages: · Most Linux and Unix vendors supply their own Wireshark packages. You can usually install or upgrade Wireshark using the package management system specific to that platform. A list of third-party packages can be found on the download page on the Wireshark web site. File Locations: · Wireshark and TShark look in several different locations for preference files, plugins, SNMP MIBS, and RADIUS dictionaries. These locations vary from platform to platform. You can use About?Folders to find the default locations on your system. |
| 1.7.0 Dev | Nov 22, 2011 | New Release | Bug Fixes: · Patch to fix memory leaks/errors in Lua plugin. (Bug 5575) · Wireshark crashes if a field of type BASE_CUSTOM is applied as a column. (Bug 6503) · Filter Expression dialog can only be opened once. (Bug 6537) · Wireshark crashes if compiled without GLib thread support. (Bug 6540) · 80211 QoS Control: Add Raw TID. (Bug 6548) · SNMP length check error. (Bug 6564) · UCP dissector bug of operation 61. (Bug 6570) |
| 1.7.0 | Nov 9, 2011 | New Release | The following vulnerabilities have been fixed: · wnpa-sec-2011-17 · The CSN.1 dissector could crash. (Bug 6351) · Versions affected: 1.6.0 to 1.6.2. · wnpa-sec-2011-18 · Huzaifa Sidhpurwala of Red Hat Security Response Team discovered that the Infiniband dissector could dereference a NULL pointer. (Bug 6476) · Versions affected: 1.4.0 to 1.4.9, 1.6.0 to 1.6.2. · wnpa-sec-2011-19 · Huzaifa Sidhpurwala of Red Hat Security Response Team discovered a buffer overflow in the ERF file reader. (Bug 6479) · Versions affected: 1.4.0 to 1.4.9, 1.6.0 to 1.6.2. The following bugs have been fixed: · Assertion failed when doing File->Quit->Save during live capture. (Bug 1710) · Wrong PCEP XRO sub-object decoding. (Bug 3778) · Wireshark window takes very long time to show up if invalid network file path is at recent file list (Bug 3810) · Decoding [Status Records] Timestamp Sequence Field in Bundle Protocol fails if over 32 bits. (Bug 4109) |
| 1.6.3 | Nov 2, 2011 | New Release | The following vulnerabilities have been fixed. : · A large loop in the OpenSafety dissector could cause a crash. (Bug 6138) · A malformed IKE packet could consume excessive resources. · A malformed capture file could result in an invalid root tvbuff and cause a crash. (Bug 6135) · Wireshark could run arbitrary Lua scripts. (Bug 6136) · The CSN.1 dissector could crash. (Bug 6139) · Versions affected: 1.6.0 to 1.6.1. The following bugs have been fixed: · configure ignores (partially) LDFLAGS. (Bug 5607) · Build fails when it tries to #include , not present in Solaris 9. (Bug 5608) · Unable to configure zero length SNMP Engine ID. (Bug 5731) · BACnet who-is request device range values are not decoded correctly in the packet details window. (Bug 5769) · H.323 RAS packets missing from packet counts in "Telephony->VoIP Calls" and the "Flow Graph" for the call. (Bug 5848) · Wireshark crashes if sercosiii module isn't installed. (Bug 6006) |
| 1.6.2 | Sep 9, 2011 | New Release | The following vulnerabilities have been fixed. : · A large loop in the OpenSafety dissector could cause a crash. (Bug 6138) · A malformed IKE packet could consume excessive resources. · A malformed capture file could result in an invalid root tvbuff and cause a crash. (Bug 6135) · Wireshark could run arbitrary Lua scripts. (Bug 6136) · The CSN.1 dissector could crash. (Bug 6139) · Versions affected: 1.6.0 to 1.6.1. The following bugs have been fixed: · configure ignores (partially) LDFLAGS. (Bug 5607) · Build fails when it tries to #include , not present in Solaris 9. (Bug 5608) · Unable to configure zero length SNMP Engine ID. (Bug 5731) · BACnet who-is request device range values are not decoded correctly in the packet details window. (Bug 5769) · H.323 RAS packets missing from packet counts in "Telephony->VoIP Calls" and the "Flow Graph" for the call. (Bug 5848) · Wireshark crashes if sercosiii module isn't installed. (Bug 6006) |
| 1.6.1 | Jul 19, 2011 | New Release | The following vulnerabilities have been fixed: · The Lucent/Ascend file parser was susceptible to an infinite loop. · Versions affected: 1.2.0 to 1.2.17, 1.4.0 to 1.4.7, and 1.6.0. · CVE-2011-2597 · The ANSI MAP dissector was susceptible to an infinite loop. · Versions affected: 1.4.0 to 1.4.7, and 1.6.0. The following bugs have been fixed: · TCP dissector doesn't decode TCP segments of length 1. · wireshark 1.4.0rc1 and python - spurious message. · Missing LUA function. · Lua API description about creating a new Tvb from a bytearray is not correct in wireshark's user guide. · Character echo pauses in Capture Filter field in Capture Options. · White space in protocol field abbreviation causes runtime failure while registering Lua dissector. · "File not found" box uses wrong filename encoding. · capinfos: #ifdef HAVE_LIBGCRYPT block includes a line too many . · Wireshark crashes if Lua contains "Pref.range()" with missing arguments. |
| 1.6.0 | Jun 4, 2011 | New Release | Bug Fixes: · Wireshark is unresponsive when capturing from named pipes on Windows. · Ring buffers are no longer turned on by default when using multiple capture files. New and Updated Features: · Wireshark can import text dumps, similar to text2pcap. · You can now view Wireshark's dissector tables (for example the TCP port to dissector mappings) from the main window. · TShark can show a specific occurrence of a field when using '-T fields'. · Custom columns can show a specific occurrence of a field. · You can hide columns in the packet list. · Wireshark can now export SMB objects. · dftest and randpkt now have manual pages. · TShark can now display iSCSI service response times. · Dumpcap can now save files with a user-specified group id. · Syntax checking is done for capture filters. · You can display the compiled BPF code for capture filters in the Capture Options dialog. |
| 1.6.0 RC 2 | Jun 4, 2011 | New Release | Bug Fixes: · Wireshark is unresponsive when capturing from named pipes on Windows. (Bug 1759) · Ring buffers are no longer turned on by default when using multiple capture files. New and Updated Features: · Wireshark can import text dumps, similar to text2pcap. · You can now view Wireshark's dissector tables (for example the TCP port to dissector mappings) from the main window. · TShark can show a specific occurrence of a field when using '-T fields'. · Custom columns can show a specific occurrence of a field. · You can hide columns in the packet list. · Wireshark can now export SMB objects. · dftest and randpkt now have manual pages. · TShark can now display iSCSI service response times. · Dumpcap can now save files with a user-specified group id. · Syntax checking is done for capture filters. · You can display the compiled BPF code for capture filters in the Capture Options dialog. |
| 1.5.1 Develo | Apr 12, 2011 | New Release | Bug Fixes: · Wireshark is unresponsive when capturing from named pipes on Windows. (Bug 1759) · Ring buffers are no longer turned on by default when using multiple capture files. |
| 1.5.0 | Jan 27, 2011 | New Release | New and Updated Features: · Wireshark can import text dumps, similar to text2pcap. · You can now view Wireshark's dissector tables (for example the TCP port to dissector mappings) from the main window. · TShark can show a specific occurrence of a field when using '-T fields'. · Custom columns can show a specific occurrence of a field. · You can hide columns in the packet list. · Wireshark can now export SMB objects. · dftest and randpkt now have manual pages. · TShark can now display iSCSI service response times. · Dumpcap can now save files with a user-specified group id. · Syntax checking is done for capture filters. · You can display the compiled BPF code for capture filters in the Capture Options dialog. · You can now navigate backwards and forwards through TCP and UDP sessions using Ctrl+, and Ctrl+. . · Packet length is (finally) a default column. · TCP window size is now avaiable both scaled and unscaled. A TCP window scaling graph is available in the GUI. |