← Deutsche Telekom Security GmbH cases
Bugzilla #1655698 Certificate Problem Report

Telekom Security: CRL also contained unrevoked certificates

RESOLVED FIXED Deutsche Telekom Security GmbH
AI Summary

Deutsche Telekom Security GmbH reported an incident where a Certificate Revocation List (CRL) mistakenly included unrevoked certificates due to a software bug during a maintenance change. The issue was identified on July 23, 2020, and corrective actions were taken, including the issuance of a new CRL. Although no certificates were actually revoked, the erroneous entries raised concerns about potential compatibility issues. The CA has since implemented measures to prevent similar incidents in the future, including software updates and improved QA processes.

Model: gpt-4o-mini Generated: 2026-06-13 21:20 UTC Confidence: 0.90
Chronology
  1. Maintenance change began
  2. Incorrect CRL issued
  3. Software bug fixed
  4. Last of the affected certificates revoked
Participants
Arnold Essing Ryan Sleevi Stefan Kirch Jan Völkel Paul Steinberg
External References
Similar Local Cases
#1703528 RESOLVED Certificate Problem Report Opened 2021-04-07 · Closed 2023-02-22 · 70% similar
Telekom Security: Key Encipherment in two ECC SAN TLS certificates
#1914383 RESOLVED Certificate Problem Report Opened 2024-08-22 · Closed 2024-12-11 · 68% similar
Telekom Security: CRL-Entries with wrong CRL Reason Codes
#1875820 RESOLVED Certificate Problem Report Opened 2024-01-22 · Closed 2024-08-03 · 68% similar
Telekom Security: TLS certificates with basicConstraints not marked as critical
#1705791 RESOLVED Certificate Problem Report Opened 2021-04-16 · Closed 2023-02-22 · 68% similar
Telekom Security: Multiple commonName in certificates
#1675314 RESOLVED Certificate Problem Report Opened 2020-11-04 · Closed 2023-02-22 · 67% similar
Telekom Security: Wrong jurisdiction entries in certificates
#2011238 RESOLVED Certificate Problem Report Opened 2026-01-19 · Closed 2026-03-17 · 59% similar
Telekom Security / DFN: CRL of “DFN-Verein Certification Authority 2“ contains empty revoked certificate list
#1645708 RESOLVED Certificate Problem Report Opened 2020-06-14 · Closed 2023-02-22 · 59% similar
QuoVadis: EV serialNumber with "none"
#1705832 RESOLVED Certificate Problem Report Opened 2021-04-16 · Closed 2023-02-22 · 59% similar
KIR S.A.: DV certificates with locality name, organization name and stateOrProvinceName

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action