Something I saw in a new data capture was when I made wireshark to display the conversation of the stream that was showing "Unknown operation (12)" packets, it displayed this:
[...] ..O...p<...a_.q.....U..... ...@..J.[... 8.0.28-0ubuntu0.20.04.3.1i..jA.;.F_b...................8#NEqB`U~H6..caching_sha2_password..@eX..O...........>Z.B..>F....E.....@.@.1. ... [...] The 2 suspicious strings here are: "8.0.28-0ubuntu0.20.04.3" and "caching_sha2_password", the former being the version of ubuntu's mysql8 package and the latter is plugin auth of mysql, I have no idea how/why that data would be present in the capture of "tcpdump -i any port 53". -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1959847 Title: Unknown operation (12) 0x0240 Unknown (7680)[Malformed Packet] To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ovn/+bug/1959847/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs