← Amazon Trust Services cases
Bugzilla #1525710 Certificate Problem Report

Amazon Trust Services: Test revoked certificates with invalid validity period

RESOLVED FIXED Amazon Trust Services
AI Summary

Amazon Trust Services reported a misissuance involving test revoked certificates that were incorrectly set with a validity period of 39 months and an incorrect subject, making them appear as EV certificates. The issue was identified during a post-ceremony validation when cablint was run on the certificates. Amazon has since updated their processes to ensure that such misissuances do not occur again, including changes to the default validity period and the review processes for certificate issuance.

Model: gpt-4o-mini Generated: 2026-06-13 15:26 UTC Confidence: 1.00
Chronology
  1. Created 5 test revoked certificates.
  2. Discovered the validity period issue during cablint validation.
  3. Provided a list of the problematic certificates.
  4. Confirmed that remediation is complete.
Participants
Ryan Sleevi Trevoli (Amazon Trust Services) Wayne Thayer
Similar Local Cases
#1574594 RESOLVED Certificate Problem Report Opened 2019-08-16 · Closed 2023-02-22 · 77% similar
Amazon Trust Services: Revoked Sample Certs - No SANs
#1719920 RESOLVED Certificate Problem Report Opened 2021-07-09 · Closed 2023-02-22 · 60% similar
Amazon Trust Services: Revocation Time for Intermediate Certificates
#1304895 RESOLVED Certificate Problem Report Opened 2016-09-22 · Closed 2023-02-22 · 60% similar
DigiCert: TI Trust Technologies Global CA issued certificate with no subject alternative name extension
#1598390 RESOLVED Certificate Problem Report Opened 2019-11-21 · Closed 2024-05-09 · 58% similar
Microsoft PKI Services: Null Character Bug and Microsoft Root CAs
#1586847 RESOLVED Certificate Problem Report Opened 2019-10-07 · Closed 2024-05-09 · 58% similar
Microsoft PKI Services: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy
#1532429 RESOLVED Certificate Problem Report Opened 2019-03-04 · Closed 2023-02-22 · 58% similar
CFCA: Invalid TLD in SAN
#1509002 RESOLVED Certificate Problem Report Opened 2018-11-21 · Closed 2023-02-22 · 58% similar
Camerfirma: MULTICERT certificates with a validity period greater than 825 days
#1509002 RESOLVED Certificate Problem Report Opened 2018-11-21 · Closed 2023-02-22 · 58% similar
Camerfirma: MULTICERT certificates with a validity period greater than 825 days

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action