Wireshark is mostly bloated due to the GUI; however, it has a text version called tshark, which uses substantially less memory ... the syntax is very similar to tcpdump...
, - 192.168.12.14, ...
tshark -n -i eth0 tcp and host 192.168.12.14 and port 80