5 Wireshark 0.99.3 has been released.
7 ------------------------------------------------------------------
11 Wireshark is the world's most popular network protocol analyzer.
12 It is used for troubleshooting, analysis, development, and
19 The following vulnerabilities have been fixed:
21 o The SCSI dissector could crash. Versions affected: 0.99.2.
23 o If Wireshark was compiled with ESP decryption support, the
24 IPsec ESP preference parser was susceptible to off-by-one
25 errors. Versions affected: 0.99.2.
27 o The DHCP dissector (and possibly others) in the Windows
28 version of Wireshark could trigger a bug in Glib and crash.
29 Versions affected: 0.10.13 - 0.99.2.
31 o If the SSCOP dissector has a port range configured and the
32 SSCOP payload protocol is Q.2931, a malformed packet could
33 make the Q.2931 dissector use up available memory. No port
34 range is configured by default. Versions affected: 0.7.9 -
37 The following bugs have been fixed:
39 o The VOIP call analysis feature could cause an assertion.
41 o The RTP analysis feature could freeze for an extended period.
43 o Selecting "Apply as Filter" wouldn't work for some tree items.
45 New and Updated Features
47 The following features are new (or have been significantly
48 updated) since the last release:
50 o ESP, Kerberos, and SSL decryption are now supported in the
51 Windows installer. (As as result, Wireshark is now subject to
52 United States export controls.)
54 o The packet list context menu now includes a conversation
57 o Wireshark can now generate ACL rules for several popular
60 o Wireshark now supports AirPcap, including raw 802.11 captures
65 Daytime, JPEG (RTP payload), Pegasus Lightweight Stream Control,
66 Pro-MPEG FEC, UMTS RRC, Veritas Low Latency Transport
68 Updated Protocol Support
70 All ASN.1 dissectors, 3G A11, 802.11, AIM SST, AJP13, ANSI 637,
71 AVS WLAN, BACapp, BFD, CDP, Cisco WIDS, DCERPC (DCERPC, CONV, DFS,
72 EPM, FLDB, NETLOGON, NT, PN-IO, RS_PGO), DCOM, DHCP, DIAMETER,
73 DTLS, EAPOL, ESP, H.225, H.245, H.450, HTTP, IPv6, ISAKMP,
74 Juniper, Kerberos, L2TP, LDAP, MSRP, NTLMSSP, PN-CBA, PN-RT,
75 Prism, RSVP, RTCP, RUDP, SCSI, SCTP, SDP, SIP, SIPFRAG, Skinny,
76 SMB, SSL, TCP, text/media, Time, XML
78 New and Updated Capture File Support
80 Catapult DCT2000, nettl
84 Wireshark source code and installation packages are available from
85 the [1]download page on the main web site.
87 Vendor-supplied Packages
89 Most Linux and Unix vendors supply their own Wireshark packages.
90 You can install or upgrade Wireshark using the package management
91 system specific to that platform. A list of third-party packages
92 can be found on the [2]download page on the Wireshark web site.
96 Wireshark and TShark look in several different locations for
97 preference files, plugins, SNMP MIBS, and RADIUS dictionaries.
98 These locations vary from platform to platform. You can use
99 About->Folders to find the default locations on your system.
103 On Windows systems the packet list scroll bar can sometimes
104 disappear or become unusable. Until the problem is fixed you can
105 work around it by resizing the packet list or the main window.
108 The Filter button is nonfunctional in the file dialogs under
111 Trying to save flow data may crash Wireshark. ([4]Bug #396)
113 It may not be possible to re-order coloring rules under Windows.
116 Multiple tap interfaces may cause a crash under FreeBSD. ([6]Bug
119 Wireshark may crash while viewing TCP streams. ([7]Bug #852)
123 Community support is available on the wireshark-users mailing
124 list. Subscription information and archives for all of Wireshark's
125 mailing lists can be found on [8]the web site.
127 Commercial support, training, and development services are
128 available from [9]CACE Technologies.
130 Frequently Asked Questions
132 A complete FAQ is available on the [10]Wireshark web site.
137 1. http://www.wireshark.org/download.html
138 2. http://www.wireshark.org/download.html#otherplat
139 3. http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=220
140 4. http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=396
141 5. http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=699
142 6. http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=757
143 7. http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=852
144 8. http://www.wireshark.org/lists/
145 9. http://www.cacetech.com/
146 10. http://www.wireshark.org/faq.html