← Entrust cases
Bugzilla #1658792
Certificate Problem Report
Entrust: Invalid data in State/Province Field
RESOLVED
FIXED
Entrust
AI Summary
Entrust identified and resolved an issue involving 397 certificates that contained invalid state/province data. The problem was initially reported by a third party on August 10, 2020, leading to a thorough investigation that confirmed the inaccuracies. Entrust took immediate action, revoking the affected certificates and implementing a plan to prevent future occurrences, including software updates to ensure correct state/province values are used in certificate issuance. The issue was marked as resolved after all affected certificates were revoked by September 5, 2020.
Chronology
- Third party reported invalid state/province data.
- Investigation confirmed multiple certificates with incorrect data.
- All affected certificates were revoked.
Participants
Dathan Demone
External References
Similar Local Cases
Entrust: Invalid localityName
Entrust: Incorrect Jurisdiction Country Value in an EV Certificate
Entrust: Failure to provide a preliminary report within 24 hours.
Entrust: Compromised Private Key was not Revoked in Less than 24 Hours
Entrust: Incorrect keyUsage for ECC certificate
Entrust: IP Address in dNSName form
Entrust: S/MIME Certificate Issued with Incorrect Policy OID
Entrust: Failure to revoke a certificate