Error when running capture in Wireshark

asked 2022-03-01 06:14:44 +0000

Fkevan gravatar image

updated 2022-03-01 08:39:08 +0000

grahamb gravatar image

I am getting following error when I am trying to capture using wireshark:

"unknown message from dumpcap reading header, try to show it as a string (dumpcap: 2980) Glib-Critical: 12:02:10.017 g_log_writer_supports_color: assertion 'output_fd>=0' failed f.

The packet capture is also showing no packet.

However, I was able to run the dumpcap from cmd and produce the pcap file. I would like to know what is the cause of above error, because that means i cannot use the wireshark GUI.

The OS environment is MS windows Server 2008 R2 and Wireshark Revision is Wireshark-win64-3.6.1.

edit retag flag offensive close merge delete

Comments

What about Wireshark 3.6.2 ?

Jaap gravatar imageJaap ( 2022-03-01 06:38:23 +0000 )edit

Similar error will appear. I read in the release note that version 3.2.x is the last one supporting windows server 2008 R2. could this be an issue?

Fkevan gravatar imageFkevan ( 2022-03-01 08:03:49 +0000 )edit

Could be. Since we're no longer working with that platform there's no (official) way to know. Unless some developer has the possibility to spin one up and look into it.

Jaap gravatar imageJaap ( 2022-03-01 12:23:38 +0000 )edit