← Telia Company cases
Bugzilla #1528263 Certificate Misissuance

Telia: Misissued certificate - Invalid wildcard format

RESOLVED FIXED Telia Company
AI Summary

Telia Company identified a misissued certificate with an invalid wildcard format during a mass lint scan of its SSL certificates. The scan, conducted on February 8, 2019, revealed nine invalid certificates across various error categories, including one with an invalid wildcard format. Telia promptly revoked the problematic certificate and implemented a fix to their validation logic by February 18, 2019. The incident highlights the importance of regular lint checks and the need for continuous improvement in certificate issuance processes.

Model: gpt-4o-mini Generated: 2026-06-13 18:03 UTC Confidence: 0.95
Chronology
  1. Discovery of invalid certificates during mass lint scan
  2. Preliminary analysis by Telia Security Board
  3. Quick analysis confirmed the error could be reproduced
  4. Fix implemented in production system
Participants
pekka.lahtiharju@teliasonera.com wthayer@fastly.com ryan.sleevi@gmail.com bugzilla@tds.xyz bug-husbandry-bot@mozilla.bugs
External References
Similar Local Cases
#1528264 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 82% similar
Telia: Misissued certificate - Invalid OU value "-"
#1612332 RESOLVED Certificate Misissuance Opened 2020-01-30 · Closed 2023-02-22 · 74% similar
Telia: Ambiguity on KeyUsage with ECC public key
#1528259 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 71% similar
Telia: misissued certificate - FQDN value incorrectly in SAN rfc822 field
#1524567 RESOLVED Certificate Misissuance Opened 2019-02-01 · Closed 2023-02-22 · 69% similar
Telia: invalid IP value in SAN DNS field
#1528261 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 62% similar
Telia: Misissued certificate - FQDN without domain part (e_dnsname_not_valid_tld)
#1828105 RESOLVED Certificate Misissuance Opened 2023-04-14 · Closed 2023-06-30 · 60% similar
Telia: Misissued certificate - wrong OrganizationName value "Hair 8 Brains"
#1552586 RESOLVED Certificate Misissuance Opened 2019-05-17 · Closed 2023-02-22 · 58% similar
GlobalSign: 4 Misissued certificates with invalid CN
#1426247 RESOLVED Certificate Misissuance Opened 2017-12-19 · Closed 2023-02-22 · 56% similar
Telia: Non-BR-Compliant OCSP Responder

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action