← DigiCert cases
Bugzilla #1445857
Certificate Misissuance
DigiCert: Mis-issuance of certificate with https in CN/SAN
RESOLVED
DigiCert
AI Summary
DigiCert reported a mis-issuance incident involving a certificate that incorrectly included 'https' in the Common Name and Subject Alternative Name fields. The issue was discovered by Cybertrust Japan during routine quality control checks. Following the discovery, the certificate was revoked, and the issuance system was patched to prevent future occurrences. DigiCert has since integrated pre-issuance checks to enhance their quality control processes.
Chronology
- Certificate issued
- Certificate discovered during quality check
- Customer contacted
- Certificate revoked
- Issuance system patched
- Pre-issuance checking integrated
Participants
Ben Wilson
Wayne Thayer
External References
Similar Local Cases
DigiCert: in-addr.arpa Misissuance
DigiCert: Internal Domain Name cert mis-issuance
Microsoft PKI Services: Certificate Mis-Issuance, Locality Missing
DigiCert: Invalid Characters in S/MIME Subject Fields
DigiCert / Justica: Invalid DNS names
DigiCert / Telecom Italia: Several Problems
DigiCert / Inteso San Paulo: Double dot characters
DigiCert: Incorrectly issued EV Certificate