← AC Camerfirma, S.A. cases
Bugzilla #1672409
Certificate Problem Report
Camerfirma: suspicious certificate for com.com
RESOLVED
FIXED
AC Camerfirma, S.A.
AI Summary
Camerfirma issued a certificate for the domain 'expired.ovcf2019.ca.intesasanpaolo.com.com' on February 14, 2020, which raised concerns due to its suspicious nature and recurring compliance issues. The certificate was revoked shortly after on February 19, 2020. The CA acknowledged the error was due to human oversight during the validation process, and measures have since been implemented to prevent similar occurrences. Despite the prompt revocation, concerns were raised regarding the lack of timely reporting to Mozilla and the potential security implications of the misissued certificate.
Chronology
- Certificate issued for expired.ovcf2019.ca.intesasanpaolo.com.com
- Certificate revoked
Participants
Andrew Ayer
Ana Lopes
Eusebio Herrera
Martin Ja
Ryan Sleevi
Paul Leo Steinberg
External References
Similar Local Cases
Camerfirma: certificate for unregistered domain cuatis.net
Camerfirma: Invalid stateOrProvinceName field
Camerfirma: Failure to revoke within 7 days: OCSP EKU issue
Camerfirma: Unrevocation of MULTICERT SSL Certification Authority 001 certificate
Camerfirma: Incorrect OCSP Delegated Responder Certificate
Camerfirma: Certificates without CABForum OV Reserved Policy Identifier
Camerfirma: Old CAs with an RSA modulus size of 2047 bits
Camerfirma: Unrevocation of MULTICERT SSL Certification Authority 001 certificate