← DigiCert cases
Bugzilla #1593814
Certificate Problem Report
DigiCert: & character in a printableString in ICA
RESOLVED
DigiCert
AI Summary
DigiCert identified an issue with three Intermediate Certificate Authorities (ICAs) that improperly encoded an '&' character in the organization name as a PrintableString instead of UTF8String, violating RFC 5280 requirements. The problem was discovered during internal audits prompted by discussions on Mozilla forums. The affected certificates were revoked, and DigiCert is enhancing their linter for key ceremonies to prevent future occurrences.
Chronology
- Reported to Wells Fargo about the mis-issuance.
- Revoked the problematic ICAs.
Participants
Jeremy Rowley
Ryan Sleevi
Rob
Daniel
W. Thayer
External References
Similar Local Cases
DigiCert: CAA Checking Issue
DigiCert: Issuance of Cert with Compromised Key
DigiCert: Onion Certs
DigiCert: OCSP responder returning invalid responses
DigiCert: Key Size Not Divisible By 8
DigiCert: JOI Issue
DigiCert: Underscores - Citi
DigiCert: TI Trust Technologies Global CA issued certificate with no subject alternative name extension