← Telia Company cases
Bugzilla #1528259 Certificate Misissuance

Telia: misissued certificate - FQDN value incorrectly in SAN rfc822 field

RESOLVED FIXED Telia Company
AI Summary

Telia Company identified a misissued certificate during a mass lint scan of its SSL certificates. The scan, conducted on February 8, 2019, revealed nine invalid certificates across various error categories, including one with an FQDN value incorrectly placed in the SAN rfc822 field. The certificate was created in 2016 and was promptly revoked within the required timeframe. Telia has since implemented measures to prevent similar issues, including ceasing the use of the problematic certificate creation console and enhancing their certificate issuance processes.

Model: gpt-4o-mini Generated: 2026-06-13 18:02 UTC Confidence: 0.95
Chronology
  1. Discovery of invalid certificates during mass lint scan
  2. Preliminary analysis and decision to revoke the misissued certificate
  3. Certificate revoked by Telia CA
  4. Quick analysis confirming similar errors cannot occur in current systems
  5. Root cause analysis conducted
Participants
pekka.lahtiharju@teliasonera.com
External References
Similar Local Cases
#1528263 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 71% similar
Telia: Misissued certificate - Invalid wildcard format
#1528264 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 70% similar
Telia: Misissued certificate - Invalid OU value "-"
#1528261 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 68% similar
Telia: Misissued certificate - FQDN without domain part (e_dnsname_not_valid_tld)
#1524567 RESOLVED Certificate Misissuance Opened 2019-02-01 · Closed 2023-02-22 · 65% similar
Telia: invalid IP value in SAN DNS field
#1828105 RESOLVED Certificate Misissuance Opened 2023-04-14 · Closed 2023-06-30 · 59% similar
Telia: Misissued certificate - wrong OrganizationName value "Hair 8 Brains"
#1612332 RESOLVED Certificate Misissuance Opened 2020-01-30 · Closed 2023-02-22 · 58% similar
Telia: Ambiguity on KeyUsage with ECC public key
#1426247 RESOLVED Certificate Misissuance Opened 2017-12-19 · Closed 2023-02-22 · 56% similar
Telia: Non-BR-Compliant OCSP Responder
#1859314 RESOLVED Certificate Misissuance Opened 2023-10-16 · Closed 2024-01-26 · 54% similar
Telia: TLS certificates issued in violation of TLS BR v2.0.1

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action