Sectigo: Invalid postalCode field
Sectigo identified issues with certificates containing invalid postal code fields, particularly those with a series of zeros or placeholder values in regions where postal codes are not applicable. The problem was reported on May 1, 2021, leading to an investigation that revealed multiple certificates issued with these invalid postal codes. Sectigo acknowledged the issue and committed to revoking affected certificates, implementing changes to their issuance practices to prevent future occurrences. The case was resolved with the revocation of the problematic certificates and a commitment to improved compliance measures.
- Bug reported regarding invalid postalCode fields.
- Sectigo acknowledged the bug and began investigation.
- Investigation results published; decision to revoke certificates made.
- Revocation of affected certificates completed.