Table of Contents
Ethereal is the world's most popular network protocol analyzer. It is used for troubleshooting, analysis, development, and education.
Three security vulnerabilities have been fixed since the previous release. See the application advisory for more details.
The IRC dissector could go into an infinite loop. Versions affected: 0.10.13.
The GTP dissector could go into an infinite loop. Versions affected: 0.9.1 to 0.10.13.
iDefense found a buffer overflow in the OSPF dissector. Versions affected: 0.8.20 to 0.10.13.
The following features are new (or have been significantly updated) since the last release:
The Windows installer now ships with GTK+ 2.6 instead of GTK+ 2.4. This should fix several long-standing bugs.
If you're loading a saved capture file and press "Cancel", Ethereal will now display the packets read up to that point. In previous versions, Ethereal would abort the attempt completely and clear the packet list.
This means that if you're loding a huge capture file, you can stop loading in the middle and still be able to analyze part of the file.
The maximum number of files allowed in a ring buffer has been increased from 1024 to 10,000.
OID to name resolution has been improved.
TCP graphs now handle upper and lower bounds better.
3Com Netjack200, CDT, CIGI, DAP, DISP, DOP, DSP, FTBP, MS NLB, NBAP, NCP SSS, NCS, NHRP, P_Mul, RNSAP, SMB2, STANAG 5066, TIPC, UDP-Lite, X.501
ACSE, AIM, ALCAP, AMR, ANSI MAP, BER, BitTorrent, BOOTP, CAMEL, CMP, CMS, COPS, CRMF, DCCP, DCERPC (DCERPC, DSSETUP, INITSHUTDOWN, NT, WINREG), DEC DNA RT, DNP, DTP, eDonkey, ENIP, ESS, Etheric, FC-DNS, FC-FZS, FMIPv6, GRE, GSM A, GSM MAP, GTP, H.225, H.235, H.245, H.248, H.263, H.450, IAPP, IEEE 802.11, INAP, IP, IPv6, IRC, ISIS LSP, ISUP, IUUP, Juniper, LLDP, M3UA, MIP, MIPv6, Modbus/TCP, MTP3, NCP, NDPS, NDS, NEMO, NMAS, NTLMSSP, OSPF, PER, PN-DCP, PPP CHAP, PPPoE, PVFS2, Q.931, RADIUS, RANAP, RDT, RLOGIN, RMT, ROS, RTCP, RTP, RTSE, S4406, SCCP, SCTP, SES, SIP, SMB, SNDCP, SRVLOC, STUN, T.38, UMA, WINS Replication, X.411, X.420, X.509
Download ethereal-setup-0.10.14.exe from the Windows download area on the main web site. Double-click the installer executable.
Download the appropriate package from the Solaris download area on the main web site. Uncompress the package using bzip2, and install it using pkgadd.
Download ethereal-0.10.14.tar.gz from the main download area on the web site. Extract the package using tar and gzip. Run "configure ; make ; make install".
Most Linux and Unix vendors supply their own Ethereal packages. You can install or upgrade Ethereal using the package management system specific to that platform. A list of third-party packages can be found on the download page on the Ethereal web site.
Ethereal and Tethereal look in several different locations for preference files, plugins, SNMP MIBS, and RADIUS dictionaries. These locations vary from platform to platform. You can use About->Folders to find the default locations on your system.
On Windows systems the packet list scroll bar can sometimes disappear or become unusable. Until the problem is fixed you can work around it by resizing the packet list or the main window. (Bug
Community support is available on the ethereal-users mailing list. Subscription information and archives for all of Ethereal's mailing lists can be found on the web site. There is also an IRC channel dedicated to Ethereal.
Commercial support, training, and development services are available from Ethereal Software.
A complete FAQ is available on the Ethereal web site.