Download Wireshark 1.0.1
Version 1.01 of the open source ‘protocol analyzer’ and packet sniffer Wireshark was released on Monday. This program was first released under the name Ethereal, but when lead developer and founder Gerald Combs exchanged the NIS company for Cace Technologies, he was able to take the software with him, but not the name due to the rights attached to it. Wireshark can be used to parse and analyze many hundreds of different network protocols and data packets sent over the network. It can also use already stored data traffic as input. The changelog for this release shows the following changes and improvements:
The following vulnerabilities have been fixed:
- The GSM SMS dissector could crash.
- The PANA and KISMET dissectors could force Wireshark to quit unexpectedly.
- The RTMPT dissector could crash.
- The RMI dissector could disclose system memory. Discovered by Noam Rathus.
- The syslog dissector could crash.
The following bugs have been fixed:
- RPC portmap classification switched to TCP after filtering. (bug 1392)
- Force the foreground color when the background is forced. (bug 1735)
- RPC stream shows malformed packets. (bug 2148)
- SNMP trap dissection fails. (bug 2253)
- Failure to detect/open valid ERF files. (bug 2359)
- Window scaling bug. (bug 2378)
- Bugs in the EIGRP dissector. (bug 2381)
- E212 Mobile network code 3rd digit is not correctly decoded. (bug 2393)
- The BOOTP dissector fails to initialize and display some values. (bug 2395)
- Data string filter crash. (bug 2402)
- Debian packaging problems. (bug 2405)
- Expert info composite crash for LDAP. (bug 2407)
- Statistics > Multicast Streams are broken. (bug 2414)
- “Read me first” file is empty in the OS X .dmg. (bug 2425)
- Failed tshark PDML export to file. (bug 2432)
- RTCP MOS fields display wrong values. (bug 2440)
- SNMP trap parse error. (bug 2442)
- Ports incorrectly decoded as DPLAY instead of RTP. (bug 2452)
- Incorrect decoding of DST MAC address of frame containing ICMPv6 Echo Request. (bug 2456)
- Fix wireshark filter man page for packet-diameter_3gpp.c fields. (bug 2457)
- Dissector bug, protocol SNMP: proto.c:932: failed assertion. (bug 2468)
- UDP not decoded as UNIStim. (bug 2475)
- Debug text output from MIKEY dissector. (bug 2481)
- Windows compilation errors with flex 2.5.35. (bug 2493)
- RTP heuristic interferes with STUN/T38 portion of heuristic. (bug 2497)
- WiMAX dissector assertion. (bug 2501)
- RTP header extensions with length>4 bytes dissected incorrectly. (bug 2505)
- Compilation failure on non-European Windows systems. (bug 2513)
- BACnet BVLC NAK decoding. (bug 2517)
- ‘tshark -Tfields -e data’ because last character of data. (bug 2518)
- “Next file every” inconsistent behaviour. (bug 2599)
- Wireshark does not parse iSCSI login PDU. (bug 2616)
- URL and encoding for OUI listings in make-manuf. (bug 2619)
New and Updated Features
- The following features are new (or have been significantly updated) since the last release:
- The “About” box finally displays version 1.0.
- Wireshark now supports custom columns.
- This release includes an experimental Mac OS X package.
New Protocol Support
- There are no new protocols in this release.
UpdatedProtocol Support
- ACTRACE, BACnet BVLC, BOOTP, E212, iSCSI, IUA, LDAP, MGCP, MIKEY, MSMMS, RMI, RPC, RTCP, RTP, SIP, SNMP, TCP, UNIStim, WiMAX
New and Updated Capture File Support
- Endace ERF
[break] Wireshark under Ubuntu, click on the image for a larger version.
| Version number | 1.0.1 |
| Release status | Final |
| Operating systems | Windows 2000, Linux, BSD, Windows XP, macOS, Solaris, UNIX, Windows Server 2003, Windows Vista |
| Website | Wireshark |
| Download | |
| File size |
21.10MB |
| License type | GPL |

