Wireshark-bugs: [Wireshark-bugs] [Bug 1825] New: ANSI MAP triggerAddressList BER Error: Wrong fi
Date: Wed, 5 Sep 2007 05:23:02 +0000 (GMT)
http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1825

           Summary: ANSI MAP triggerAddressList BER Error: Wrong field in SQ
                    OF
           Product: Wireshark
           Version: 0.99.7
          Platform: PC
        OS/Version: Windows XP
            Status: NEW
          Severity: Normal
          Priority: Medium
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: peter.leeming@xxxxxx


Build Information:
Version 0.99.7-SVN-22785 (SVN Rev 22785)

Copyright 1998-2007 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled with GTK+ 2.10.14, with GLib 2.12.13, with WinPcap (version unknown),
with libz 1.2.3, with libpcre 6.4, with SMI 0.4.5, with ADNS, with Lua 5.1,
with
GnuTLS 1.6.1, with Gcrypt 1.2.3, with MIT Kerberos, with PortAudio PortAudio
V19-devel, with AirPcap.

Running on Windows XP Service Pack 2, build 2600, with WinPcap version 4.0.1
(packet.dll version 4.0.0.901), based on libpcap version 0.9.5, without
AirPcap.

Built using Microsoft Visual C++ 6.0 build 8804

Wireshark is Open Source Software released under the GNU General Public
License.

Check the man page and http://www.wireshark.org for more information.
--
Wireshark flags a decoding error when decoding the triggerAddressList element
of an ANSI MAP message.

The error displayed is:
triggerAddressList: 1 item
  BER Error: Wrong field in SQ OF

For a test capture file, please see the attachment for bug 1820.

Looking at the OriginationRequestResult in this file, it looks like the problem
is detected in the WIN_TriggerList element, which is present with tag 0x9f 0x82
0x1b and length 14.  This seems to be in accordance with 3GPP2 X.S0004-550-E
Version 1.0.0 Date: March 2004, which allows for the field to be an octet
string consisting of one or more detection point types (TDP-R, TDP-N, EDP-R,
EDP-N), each followed by one octet for each trigger type associated with the
detection type.


-- 
Configure bugmail: http://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.