← Internet Security Research Group cases
Bugzilla #1619047
Self Reported Incident
Certificate Misissuance
Let's Encrypt: CAA Rechecking bug
RESOLVED
FIXED
Internet Security Research Group
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
Let's Encrypt identified a bug in their CAA code that caused incorrect validation of CAA records during certificate issuance. The issue was discovered on February 29, 2020, leading to a halt in certificate issuance shortly after confirmation. A fix was deployed the same day, and issuance was re-enabled. The bug allowed certificates to be issued even if CAA records later prohibited issuance, affecting over 3 million certificates. Let's Encrypt committed to a detailed investigation and provided a postmortem report outlining the timeline and actions taken in response to the incident.
Chronology
- Let's Encrypt discovered a bug in their CAA code.
- Issuance of certificates was halted.
- A fix was deployed and issuance was re-enabled.
Thread Activity
- Internet Security Research Group — Confirmed the bug and halted issuance.
- Internet Security Research Group — Provided an incident report detailing the discovery and response timeline.
- Internet Security Research Group — Requested closure of the bug as all remediation items were completed.
Participants
Internet Security Research Group
Community commenter
Mozilla representative
External References
Similar Local Cases
Let's Encrypt: certificate lifetimes 90 days plus one second
Let's Encrypt: TLS Using ALPN Allows Additional Identifiers in Challenge Certificate
Let's Encrypt: OCSP Responder Returned "Unauthorized" for Some Precertificates
Let's Encrypt: Early CRL Removal Incident
Let's Encrypt: TLS Using ALPN TLS Version and OID
Let's Encrypt: No Meaningful Subject Distinguished Name
GlobalSign: Invalid stateOrProvinceName and locality pair
Let's Encrypt: Incomplete and Inconsistent CRLs