Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

New Wireshark versions crashes #2

Open
Source61 opened this issue Oct 31, 2020 · 5 comments
Open

New Wireshark versions crashes #2

Source61 opened this issue Oct 31, 2020 · 5 comments
Assignees
Labels

Comments

@Source61
Copy link

Source61 commented Oct 31, 2020

New Wireshark versions at least >= 3.2.8 are crashing when loading Tibia rsa keys settings.
Also the RSA decryption doesn't seem to work for me using custom RSA keys.

@a3f
Copy link
Owner

a3f commented Nov 2, 2020

I can't reproduce this locally with either current master (wireshark/wireshark@9ac8dcb) or v3.2.8 (wireshark/wireshark@8c208b7).
Could you describe the steps to reproduce?

I tested with 1077.pcap.gz and OTServ privat key:

"192.236.132.181","7171","/home/a3f/prjs/Game-Tibia-Chess/share/otserv.private",""

RSA decryption worked for me with Try OTServ's RSA key unchecked.

@a3f a3f closed this as completed Nov 9, 2020
@a3f a3f added the invalid label Nov 9, 2020
@Source61
Copy link
Author

@a3f
No real steps to reproduce involved, every single vanilla wireshark version >= 3.2.8 release with this plugin pre-installed crashes when adding/setting the RSA pem file using your script to generate.
I don't want to publicly release my private key or my server's IP, but can make you a recording of wireshark crashing if you'd like me to.

@Source61
Copy link
Author

Created a new PEM using I believe default otserv primes, same result - wireshark crashing (Preferences -> Protocols -> Tibia -> Edit RSA Keys -> Add -> Details -> Ok -> Crash).
PEM file: http://paste.debian.net/1172349/

@Source61
Copy link
Author

Update: Tried your PEM key, Wireshark still crashing when adding it.
To be clear Wireshark works fine until I try to add a PEM key under the Tibia protocol tab.
No capturing involved, just settings...

@a3f a3f reopened this Nov 16, 2020
@Source61
Copy link
Author

I forgot to add that I'm running Windows.
Wireshark with your plugin used to work for me when I was running Linux, but I can't run Linux anymore with my new laptop.
Here's a video recording of the persistent crashing after adding a keyfile: https://i.imgur.com/pGexN2A.mp4
To recover Wireshark I have to run Wireshark 2.6 and delete the key from there since it doesn't crash, but lacks newer functionality, including detecting required adapters for my captures.
Here's the pem keyfile I used in the recording: https://github.com/Source61/scripts/blob/master/a3f.pem

Either way I don't think I actually need the plugin for my own use currently, would've just been nice to have especially earlier, thought I'd let you know about the issue just in case.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants