← Krajowa Izba Rozliczeniowa S.A. (KIR) cases
Bugzilla #1523186 Certificate Misissuance

KIR S.A.: Misissuance - missing OCSP AIA, Validity > 825 days

RESOLVED FIXED Krajowa Izba Rozliczeniowa S.A. (KIR)
AI Summary

Krajowa Izba Rozliczeniowa S.A. (KIR) reported a misissuance incident involving a certificate that lacked an OCSP AIA and had a validity period exceeding 825 days. The issue was identified during a post-issuance linting procedure, leading to a series of corrective actions including the revocation of the problematic certificate and the implementation of a patch to prevent future occurrences. KIR has since updated its policies and procedures to enhance compliance and prevent similar issues.

Model: gpt-4o-mini Generated: 2026-06-13 17:59 UTC Confidence: 0.90
Chronology
  1. Certificate without OCSP AIA issued.
  2. Root cause investigation initiated.
  3. Problematic certificate revoked.
  4. Basic pre-linting patch deployed.
Participants
Piotr Grabowski Wayne Thayer Ryan Sleevi
External References
Similar Local Cases
#1495497 RESOLVED Certificate Misissuance Opened 2018-10-01 · Closed 2023-02-22 · 69% similar
KIR S.A.: Certificates issued with multiple BR violations
#1644936 RESOLVED Certificate Misissuance Opened 2020-06-11 · Closed 2024-05-09 · 63% similar
Microsoft PKI Services: Certificate Mis-Issuance, Locality Missing
#1551372 RESOLVED Certificate Misissuance Opened 2019-05-14 · Closed 2023-02-22 · 60% similar
Telia: "Some-State" in stateOrProvinceName
#1519260 RESOLVED Certificate Misissuance Opened 2019-01-10 · Closed 2023-02-22 · 60% similar
QuoVadis: Multiple unreported misissuances in 2018
#1576133 RESOLVED Certificate Misissuance Opened 2019-08-23 · Closed 2023-02-22 · 59% similar
SECOM: Mis-issued EV Certificates
#1556806 RESOLVED Certificate Misissuance Opened 2019-06-04 · Closed 2023-02-22 · 59% similar
Camerfirma: Infocert misissued certificates
#1595921 RESOLVED Certificate Misissuance Opened 2019-11-12 · Closed 2023-02-22 · 59% similar
DigiCert: Domain validation skipped
#1611458 RESOLVED Certificate Misissuance Opened 2020-01-24 · Closed 2023-02-22 · 58% similar
Asseco DS / Certum: Invalid value in SAN dNSName

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action