Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 316835 - =net-analyzer/wireshark-1.2.7 unable to capture packets
Summary: =net-analyzer/wireshark-1.2.7 unable to capture packets
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Peter Volkov (RETIRED)
URL: https://bugs.wireshark.org/bugzilla/s...
Whiteboard:
Keywords:
Depends on:
Blocks: CVE-2010-1455
  Show dependency tree
 
Reported: 2010-04-23 16:40 UTC by Richard
Modified: 2010-05-10 05:05 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Richard 2010-04-23 16:40:12 UTC
Running wireshark via its GUI to capture packets does not work. It will start and look like it is capturing packets and waiting for more packets to come, some times initially displaying 2 to 4 packets, but no additional packets are ever captured.

net-analyzer/wireshark-1.2.6-r1 works without issue.

Reproducible: Always

Steps to Reproduce:
1. Emerge wireshark
2. Run a capture on your NIC
3. Do stuff that uses it and watch nothing be captured
Comment 1 Samuli Suominen (RETIRED) gentoo-dev 2010-04-23 17:23:54 UTC
Might be a duplicate of bug 311241.

Make sure you have upgraded from zlib-1.2.4 to zlib-1.2.5 and recompile wireshark.  Or try with USE="-zlib".

If that doesn't work, post also `emerge --info`.  Thanks.
Comment 2 Richard 2010-04-23 19:29:57 UTC
I am already running zlib-1.2.5. I ran "USE="-zlib" emerge -av wireshark" to install wireshark 1.2.7 without zlib support and that fixed the problem.

In case it is of any use, here is emerge --info:

# emerge --info
Portage 2.1.8.3 (default/linux/x86/10.0, gcc-4.4.3, glibc-2.11-r1, 2.6.33.2 i686)
=================================================================
System uname: Linux-2.6.33.2-i686-Genuine_Intel-R-_CPU_T2400_@_1.83GHz-with-gentoo-2.0.1
Timestamp of tree: Fri, 23 Apr 2010 18:30:01 +0000
ccache version 2.4 [enabled]
app-shells/bash:     4.1_p5
dev-java/java-config: 2.1.10
dev-lang/python:     2.6.5-r1, 3.1.2-r2
dev-util/ccache:     2.4-r8
dev-util/cmake:      2.8.1-r1
sys-apps/baselayout: 2.0.1
sys-apps/openrc:     0.6.1-r1
sys-apps/sandbox:    2.2
sys-devel/autoconf:  2.13, 2.65
sys-devel/automake:  1.8.5-r3, 1.9.6-r3, 1.10.3, 1.11.1
sys-devel/binutils:  2.20.1
sys-devel/gcc:       4.4.3
sys-devel/gcc-config: 1.4.1
sys-devel/libtool:   2.2.6b
virtual/os-headers:  2.6.33
ACCEPT_KEYWORDS="x86 ~x86"
ACCEPT_LICENSE="*"
CBUILD="i686-pc-linux-gnu"
CFLAGS="-O2 -march=prescott -pipe -fomit-frame-pointer -floop-interchange -floop-strip-mine -floop-block"
CHOST="i686-pc-linux-gnu"
CONFIG_PROTECT="/etc /usr/share/X11/xkb /usr/share/config /var/lib/hsqldb"
CONFIG_PROTECT_MASK="/etc/ca-certificates.conf /etc/env.d /etc/env.d/java/ /etc/fonts/fonts.conf /etc/gconf /etc/gentoo-release /etc/php/apache2-php5/ext-active/ /etc/php/cgi-php5/ext-active/ /etc/php/cli-php5/ext-active/ /etc/revdep-rebuild /etc/sandbox.d /etc/terminfo /etc/texmf/language.dat.d /etc/texmf/language.def.d /etc/texmf/updmap.d /etc/texmf/web2c"
CXXFLAGS="-O2 -march=prescott -pipe -fomit-frame-pointer -floop-interchange -floop-strip-mine -floop-block"
DISTDIR="/usr/portage/distfiles"
FEATURES="assume-digests buildpkg ccache distlocks fixpackages news parallel-fetch protect-owned sandbox sfperms strict unmerge-logs unmerge-orphans userfetch"
FFLAGS="-O2 -march=prescott -pipe -fomit-frame-pointer -floop-interchange -floop-strip-mine -floop-block"
GENTOO_MIRRORS="http://mirror.csclub.uwaterloo.ca/gentoo-distfiles/ http://gentoo.netnitco.net http://distro.ibiblio.org/pub/linux/distributions/gentoo/"
LDFLAGS="-Wl,-O1"
LINGUAS="en"
MAKEOPTS="-j3"
PKGDIR="/usr/portage/packages"
PORTAGE_CONFIGROOT="/"
PORTAGE_RSYNC_OPTS="--recursive --links --safe-links --perms --times --compress --force --whole-file --delete --stats --timeout=180 --exclude=/distfiles --exclude=/local --exclude=/packages"
PORTAGE_TMPDIR="/var/tmp"
PORTDIR="/usr/portage"
PORTDIR_OVERLAY="/var/lib/layman/sunrise /var/lib/layman/vmware /usr/local/portage"
SYNC="rsync://rsync.gentoo.org/gentoo-portage"
USE="X acl acpi alsa apm berkdb bzip2 cdr cli consolekit cracklib crypt cups cxx dbus dri dvd dvdr fftw fortran gd gdbm gif gnutls gpm hal iconv ipv6 java java6 jpeg kde lzma midi mmap mmx mng modules mp3 mudflap ncurses nls nptl nptlonly nsplugin opengl openmp pam pcre perl png pppd python qt3 qt3support qt4 readline reflection samba session spl sqlite sse sse2 sse3 ssl svg sysfs tcpd threads tiff unicode x264 x86 xml xorg xvmc zlib" ALSA_CARDS="ali5451 als4000 atiixp atiixp-modem bt87x ca0106 cmipci emu10k1 emu10k1x ens1370 ens1371 es1938 es1968 fm801 hda-intel intel8x0 intel8x0m maestro3 trident usb-audio via82xx via82xx-modem ymfpci" ALSA_PCM_PLUGINS="adpcm alaw asym copy dmix dshare dsnoop empty extplug file hooks iec958 ioplug ladspa lfloat linear meter mmap_emul mulaw multi null plug rate route share shm softvol" APACHE2_MODULES="actions alias auth_basic authn_alias authn_anon authn_dbm authn_default authn_file authz_dbm authz_default authz_groupfile authz_host authz_owner authz_user autoindex cache dav dav_fs dav_lock deflate dir disk_cache env expires ext_filter file_cache filter headers include info log_config logio mem_cache mime mime_magic negotiation rewrite setenvif speling status unique_id userdir usertrack vhost_alias" ELIBC="glibc" INPUT_DEVICES="evdev synaptics" KERNEL="linux" LCD_DEVICES="bayrad cfontz cfontz633 glk hd44780 lb216 lcdm001 mtxorb ncurses text" LINGUAS="en" NETBEANS_MODULES="*" RUBY_TARGETS="ruby18" USERLAND="GNU" VIDEO_CARDS="nvidia" 
Unset:  CPPFLAGS, CTARGET, EMERGE_DEFAULT_OPTS, INSTALL_MASK, LANG, LC_ALL, PORTAGE_COMPRESS, PORTAGE_COMPRESS_FLAGS, PORTAGE_RSYNC_EXTRA_OPTS
Comment 3 Peter Volkov (RETIRED) gentoo-dev 2010-04-25 07:21:04 UTC
Thank you for report. Could you try to rebuild wireshark against zlib 1.2.5 to be sure that this is same issue with zlib? zlib upgrade will not fix the problem and rebuild is required. What USE flags do you use? Could you try to load dump files attached in 

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4606

Currently I'm just unable to reproduce this problem with 1.2.5.
Comment 4 Alexander E. Patrakov 2010-04-25 07:39:07 UTC
I can reproduce the problem, as described in the original description, on x86_64 even after rebuilding. I can confirm that rebuilding wireshark with USE="-zlib" fixes it for me and USE="zlib" reintroduces the problem.

Versions: net-analyzer/wireshark-1.2.7, sys-libs/zlib-1.2.5

Since you can't reproduce the problem (i.e.: you can capture more than 100 packets), it is either specific to x86_64 or is caused by our difference in CFLAGS or compiler version.
Comment 5 Peter Volkov (RETIRED) gentoo-dev 2010-04-25 12:03:50 UTC
Ok, reproduced. zlib disabled again.
Comment 6 Richard 2010-04-25 20:06:35 UTC
(In reply to comment #3)
> Thank you for report. Could you try to rebuild wireshark against zlib 1.2.5 to
> be sure that this is same issue with zlib? zlib upgrade will not fix the
> problem and rebuild is required. What USE flags do you use? Could you try to
> load dump files attached in 
> 
> https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4606
> 
> Currently I'm just unable to reproduce this problem with 1.2.5.
> 

The system is running ~arch, so wireshark was built against zlib 1.2.5 from the start.

(In reply to comment #4)
> I can reproduce the problem, as described in the original description, on
> x86_64 even after rebuilding. I can confirm that rebuilding wireshark with
> USE="-zlib" fixes it for me and USE="zlib" reintroduces the problem.
> 
> Versions: net-analyzer/wireshark-1.2.7, sys-libs/zlib-1.2.5
> 
> Since you can't reproduce the problem (i.e.: you can capture more than 100
> packets), it is either specific to x86_64 or is caused by our difference in
> CFLAGS or compiler version.
> 

It is definitely not specific to x86_64. My system is 32-bit.
Comment 7 Richard 2010-05-02 01:14:02 UTC
Someone forgot to mark this bug fixed.
Comment 8 Peter Volkov (RETIRED) gentoo-dev 2010-05-02 07:48:10 UTC
It's not fixed since zlib support is still broken.
Comment 9 Peter Volkov (RETIRED) gentoo-dev 2010-05-08 07:23:57 UTC
I've commited wireshark-1.2.8-r1 with upstream patch to fix this issue. Please, try it and report if it works for you. Thanks.
Comment 10 Richard 2010-05-09 22:40:46 UTC
(In reply to comment #9)
> I've commited wireshark-1.2.8-r1 with upstream patch to fix this issue. Please,
> try it and report if it works for you. Thanks.
> 

I have emerged wireshark-1.2.8-r1 on my system with +zlib and I am unable to reproduce the original bug.
Comment 11 Peter Volkov (RETIRED) gentoo-dev 2010-05-10 05:05:39 UTC
Thank you, Richard. This bug is fixed then.