← Deutsche Telekom Security GmbH cases
Bugzilla #1705791 Ca Certificate Compliance Certificate Misissuance

Telekom Security: Multiple commonName in certificates

RESOLVED FIXED Deutsche Telekom Security GmbH
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case involves Deutsche Telekom Security GmbH, which discovered multiple 'commonName' fields in several certificates, potentially violating Mozilla's CA policies. The issue was reported on April 16, 2021, and the CA acknowledged the problem on April 19, 2021. They updated their issuance system to prevent further issuance of certificates with multiple 'commonName' fields and committed to revoke the affected certificates by April 24, 2021. The CA has since completed the revocation and updated their internal rules to better assess anomalies in certificate issuance.

Model: gpt-4o-mini Generated: 2026-06-13 21:22 UTC Revised: 2026-06-16 18:31 UTC Confidence: 0.85 30 comments
Chronology
  1. Bug reported regarding multiple commonName fields in certificates.
  2. Deutsche Telekom Security acknowledged the issue and began investigating.
  3. System changes implemented to prevent issuance of certificates with multiple commonNames.
  4. All affected certificates were revoked.
Thread Activity
  1. Lebihan representative — Reported certificates with multiple commonName fields.
  2. Telekom representative — Acknowledged the notification and began investigation.
  3. Dfn-cert representative — Confirmed system changes to prevent future issuance of multiple commonNames.
  4. Dfn-cert representative — All affected certificates have been revoked.
Participants
Lebihan representative Community commenter Telekom representative Dfn-cert representative
External References
Similar Local Cases
#1711432 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2021-05-17 · Closed 2023-02-22 · 100% similar
Telekom Security: Certificate with invalid FQDN
#1703528 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2021-04-07 · Closed 2023-02-22 · 100% similar
Telekom Security: Key Encipherment in two ECC SAN TLS certificates
#1875820 RESOLVED Incident Certificate Misissuance Self Reported Incident Opened 2024-01-22 · Closed 2024-08-03 · 90% similar
Telekom Security: TLS certificates with basicConstraints not marked as critical
#1957962 RESOLVED Ca Certificate Compliance Opened 2025-04-02 · Closed 2025-07-16 · 88% similar
Telekom Security: QCStatement with http link to PDS
#1716123 RESOLVED Ca Certificate Compliance Certificate Misissuance Self Reported Incident Opened 2021-06-12 · Closed 2024-05-25 · 88% similar
e-commerce monitoring GmbH: CN domain not in SAN
#1705187 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2021-04-14 · Closed 2023-02-22 · 85% similar
KIR S.A.: CN domain not in SAN
#1914383 RESOLVED Incident Certificate Misissuance Self Reported Incident Opened 2024-08-22 · Closed 2024-12-11 · 79% similar
Telekom Security: CRL-Entries with wrong CRL Reason Codes
#1390991 RESOLVED Ca Certificate Compliance Incident Certificate Misissuance Opened 2017-08-16 · Closed 2023-02-22 · 79% similar
Disig: Non-BR-Compliant Certificate Issuance

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action