|
|||||||||||
|
[Snort-devel] BUG - Solaris + snort 2.0.1 in PrintTcpOptions
From: Bruno Saverio Delbono <bdelbono(at)leviathan.lucifer.at>
Date: Wed Jul 23 2003 - 19:57:13 EDT
OS - Solaris 7 SunOS hell.lucifer.at 5.7 Generic_106541-08 sun4m sparc SUNW,SPARCstation-5 CC - cc: Sun C 5.5 2003/03/12 (Part of SunONE 8 Compiler collection) BUG In - Reading of snort.log binary log files Details:
hell.lucifer.at# dbx /usr/bin/snort
(dbx) run -dve -r snort.log.1058979504
Reading nss_files.so.1
--== Initializing Snort ==--
--== Initialization Complete ==--
-*> Snort! <*-
07/23-09:59:33.547274 0:0:77:98:8A:1B -> 8:0:20:20:FF:3D type:0x800 len:0x3C 24.84.17.78 -> 24.84.18.15 ICMP TTL:53 TOS:0x0 ID:37089 IpLen:20 DgmLen:28 DF Type:8 Code:0 ID:9126 Seq:0 ECHO =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+ 07/23-09:59:33.580588 8:0:20:20:FF:3D -> 0:0:77:98:8A:1B type:0x800 len:0x2A 24.84.18.15 -> 24.84.17.78 ICMP TTL:255 TOS:0x0 ID:62780 IpLen:20 DgmLen:28 DF Type:0 Code:0 ID:9126 Seq:0 ECHO REPLY =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
07/23-09:59:34.407405 0:0:77:98:8A:1B -> 8:0:20:20:FF:3D type:0x800 len:0x3E
24.84.17.78:53109 -> 24.84.18.15:161 TCP TTL:63 TOS:0x0 ID:37138
IpLen:20 DgmLen:48 DF
signal BUS (invalid address alignment) in PrintTcpOptions at line 1547 in file "log.c" 1547 fprintf(fp, "%u ", EXTRACT_16BITS(tmp));
(dbx) where
0x2d7e42 "^H"), line 566 in "snort.c"
0x595d8, 0xeffff8d0), at 0xcafc8
0x228570), at 0xc15c0
Workaround: Currently none Anyone, please help? -- Bruno Saverio DelbonoReceived on Wed Jul 23 20:31:27 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:08:06 EDT |
||||||||||
|
|||||||||||