Network protocol analyzer

Wireshark is a network traffic analyzer, or "sniffer", for Unix and
Unix-like operating systems. It uses GTK+, a graphical user interface
library, and libpcap, a packet capture and filtering library.

The Wireshark distribution also comes with TShark, which is a
line-oriented sniffer (similar to Sun's snoop, or tcpdump) that uses the
same dissection, capture-file reading and writing, and packet filtering
code as Wireshark, and with editcap, which is a program to read capture
files and write the packets from that capture file, possibly in a
different capture file format, and with some packets possibly removed
from the capture.

This package tracks version 2 stable branch.

Package options: gtk3, lua

   2018-01-28 21:11:10 by Thomas Klausner | Files touched by this commit (462) | Package updated
Log message:
Bump PKGREVISION for gdbm shlib major bump
   2018-01-13 23:32:53 by Roland Illig | Files touched by this commit (2)
Log message:
wireshark: fix pkglint warnings
   2018-01-12 23:25:18 by Ryo ONODERA | Files touched by this commit (2) | Package updated
Log message:
Update to 2.4.4

## Bug Fixes
The following bugs have been fixed:

    Multiple dissectors could crash. (Bug 14253) CVE-2018-5336

    The IxVeriWave file parser could crash. (Bug 14297) CVE-2018-5334

    The WCP dissector could crash. (Bug 14251) CVE-2018-5335

Prior to this release dumpcap enabled the Linux kernel's BPF JIT compiler
via the net.core.bpf_jit_enable sysctl. This could make systems
more vulnerable to Spectre variant 1 (CVE-2017-5753) and this feature
has been removed (Bug 14313).

    Some keyboard shortcut mix-up has been resolved by assigning
      new shortcuts to Edit -> Copy methods.
    Remote interfaces are not saved. (Bug 8557)
    Additional grouping in Expert Information dialog. (Bug 11753)
    First start with non-empty extcap folder after install or reboot
      hangs at "initializing tap listeners". (Bug 12845)
    Can't hide expert categories in Expert Information. (Bug 13831)
    Expert info dialog should have "Collapse All"/"Expand \ 
All" options.
      (Bug 13842)
    SIP Statistics extract does not work. (Bug 13942)
    Service Response Time - SCSI dialog crashes. (Bug 14144)
    Wireshark & Tshark 2.4.2 core dumps with segmentation fault. (Bug 14194)
    SSH remote capture promiscuous mode. (Bug 14237)
    SOCKS pseudo header displays incorrect Version value. (Bug 14262)
    Only first variable of list is dissected in NTP Control request
      message. (Bug 14268)
    NTP Authenticator field dissection fails if padding is used. (Bug 14269)
    BSSAP packet dissector issue - BSSAP_UPLINK_TUNNEL_REQUEST message.
      (Bug 14289)
    "[Malformed Packet]" for Mobile IP (MIP) protocol. (Bug 14292)
    There is a potential buffer underflow in File_read_line function in
      epan/wslua/wslua_file.c file. (Bug 14295)
    Saving a temporary capture file may not result in the temporary
      file being removed. (Bug 14298)

## Updated Protocol Support
   2018-01-03 12:09:41 by Ryo ONODERA | Files touched by this commit (4) | Package updated
Log message:
Update to 2.4.3

Bug Fixes

The following bugs have been fixed:


    The IWARP_MPA dissector could crash. (Bug 14236)


    The NetBIOS dissector could crash. (Bug 14249)


    The CIP Safety dissector could crash. (Bug 14250)

    "tshark -G ?" doesn't provide expected help. (Bug 13984)
    File loading is very slow with TRANSUM dissector enabled. (Bug 14094)
    packet-knxnetip.c:936: bad bitmask ?. (Bug 14115)
    packet-q931.c:1306: bad compare ?. (Bug 14116)
    SSL Dissection bug. (Bug 14117)
    Wireshark crashes when exporting various files to .csv, txt and other
      'non-capture file' formats. (Bug 14128)
    RLC reassembly doesn't work for RLC over UDP heuristic dissector.
      Bug 14129)
    HTTP Object export fails with long extension (possibly query string).
      (Bug 14130)
    3GPP Civic Address not displayed in Packet Details. (Bug 14131)
    Wireshark prefers packet.dll in System32\\Npcap over the one in
      System32. (Bug 14134)
    PEEKREMOTE dissector does not decode 11ac MCS rates properly. (Bug 14136)
    Visual Studio Community Edition 2015 lacks tools named in developer
      guide. (Bug 14147)
    TCP: Malformed data with Riverbed Probe option. (Bug 14150)
    Wireshark Crash when trying to use Preferences | Advanced. (Bug 14157)
    Right click on SMB2 Message ID and then Apply as Column causes Runtime
      Error. (Bug 14169)
    Return [Enter] should apply change (Column title - Button Label
      toolbars). (Bug 14191)
    Wireshark crashes if "rip.display_routing_domain" is set to TRUE in
      preferences file. (Bug 14197)
    Entry point inflatePrime not found for androiddump.exe and
      randpktdump.exe. (Bug 14207)
    BGP: IPv6 NLRI is received with Add-path ID, then Wire shark is not
      able to decode the packet correctly. (Bug 14241)
    Wrong SSL decryption when using EXTENDED MASTER SECRET and Client
      certificate request (mutual authentication). (Bug 14243)
    Frame direction isn't always set if it comes from the pcapng record
      header rather than the packet pseudo-header. (Bug 14245)

Updated Protocol Support

3GPP NAS, BGP, CIP Safety, DTLS, IEEE 802.11 Radio, IWARP_MPA,
   2017-11-30 17:45:43 by Adam Ciarcinski | Files touched by this commit (654) | Package updated
Log message:
Revbump after textproc/icu update
   2017-11-23 21:35:32 by Thomas Klausner | Files touched by this commit (2) | Package updated
Log message:
wireshark: update to 2.2.10.

  Bug Fixes

   The following vulnerabilities have been fixed:
     * [1]wnpa-sec-2017-42
       BT ATT dissector crash ([2]Bug 14049) [3]CVE-2017-15192
     * [4]wnpa-sec-2017-43
       MBIM dissector crash ([5]Bug 14056) [6]CVE-2017-15193
     * [7]wnpa-sec-2017-44
       DMP dissector crash ([8]Bug 14068) [9]CVE-2017-15191

   The following bugs have been fixed:
     * Wireshark crash when end capturing with "Update list of packets in
       real-time" option off. ([10]Bug 13024)
     * Diameter service response time statistics broken in 2.2.4. ([11]Bug
     * Some Infiniband Connect Req fields are not decoded correctly.
       ([12]Bug 13997)
     * wireshark-2.4.1/epan/dissectors/packet-dmp.c:1034: sanity check in
       wrong place ?. ([13]Bug 14016)
     * [oss-fuzz] ASAN: 232 byte(s) leaked in 4 allocation(s). ([14]Bug
     * [oss-fuzz] ASAN: 47 byte(s) leaked in 1 allocation(s). ([15]Bug
     * RTP Analysis "save as CSV" saves twice the forward stream, if two
       streams are selected. ([16]Bug 14040)
     * Cannot Apply Bitmask to Long Unsigned. ([17]Bug 14063)

  Updated Protocol Support

   BT ATT, DCERPC, DMP, E.212, H.248, InfiniBand, MBIM, RPC, and WSP
   2017-11-23 18:20:22 by Thomas Klausner | Files touched by this commit (556)
Log message:
recursive bump for libxkbcommon removal from at-spi2-core
   2017-09-20 21:49:38 by Adam Ciarcinski | Files touched by this commit (2)
Log message:
wireshark: fixed building with qt5; added building with qt4 as an option