← Microsec Ltd. cases
Bugzilla #1512270 Ca Certificate Compliance Certificate Misissuance

Microsec: Validity period greater than 825 days

RESOLVED FIXED Microsec Ltd.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case concerns Microsec misissuing three CISCO VPN server certificates to the Hungarian Chamber of State Notaries. The certificates were issued with three years validity instead of two years, which was identified as a problem by Mozilla (notification email from Alex Gaynor on 2018-11-29). After receiving the notification, Microsec ordered replacement certificates with two years validity and informed the customer about the misissuance. Microsec also planned and then carried out revocation of the original misissued certificates. The customer reported on 2018-12-03 that all three certificates had been replaced successfully, and that the misissued certificates were revoked. The thread later states that the discussion completed and no further action was required, and the bug is resolved as FIXED.

Model: gpt-5.4-nano Generated: 2026-06-13 17:57 UTC Revised: 2026-06-16 19:12 UTC Confidence: 0.86 3 comments
Chronology
  1. Microsec issued three CISCO VPN server certificates with three years validity.
  2. Mozilla notified Microsec of two misissued certificates (validity period issue).
  3. Microsec ordered replacement certificates with two years validity and replacement of all three affected certificates.
  4. The customer reported replacement completion and revocation of the misissued certificates.
Thread Activity
  1. Fastly representative — Wayne Thayer posted Microsec’s incident report describing how Microsec became aware, the timeline of replacement issuance and planned revocation, and the problematic certificates/validity issue.
  2. Fastly representative — Wayne Thayer added a link to the related discussion on the mozilla.dev.security.policy mailing list.
  3. Fastly representative — Wayne Thayer stated the discussion completed and no further action was required.
Participants
Fastly representative Microsec representative Community commenter
Similar Local Cases
#1676352 RESOLVED Certificate Misissuance Incident Opened 2020-11-10 · Closed 2023-02-22 · 81% similar
Microsec: Certificate validity period greater than 398 days
#1728384 RESOLVED Certificate Misissuance Incident Opened 2021-08-31 · Closed 2023-02-22 · 81% similar
Microsec: Misissuance of one OV certificate with Key Usage KeyEncipherment
#1886257 RESOLVED Certificate Misissuance Opened 2024-03-19 · Closed 2024-08-28 · 81% similar
Microsec: Misissuance an EV TLS certificate without CPSuri
#1449371 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2018-03-27 · Closed 2023-02-22 · 79% similar
E-Tugra: Validity period > 825 days
#1397965 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2017-09-07 · Closed 2023-02-22 · 78% similar
DigiCert / Swiss Government: CommonName not in SANs
#1431164 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2018-01-17 · Closed 2023-02-22 · 75% similar
Camerfirma: Non-BR-Compliant Issuance - Non-printable characters in OU field
#1866091 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2023-11-22 · Closed 2023-12-11 · 72% similar
SwissSign: EV JurisdictionStateOrProvinceName - one certificate not selected for revocation
#1447192 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2018-03-20 · Closed 2023-02-22 · 71% similar
DigiCert: Onion Certs

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action