← Internet Security Research Group cases
Bugzilla #1789521 Certificate Misissuance

Let's Encrypt: Certificates issued to Elliptic Curve Debian Weak Keys

RESOLVED FIXED Internet Security Research Group
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case describes an incident where Let's Encrypt discovered that two certificates were issued whose SPKI matched elliptic curve Debian weak keys associated with the Debian Weak Key vulnerability (CVE-2008-0166). The CA became aware of the underlying issue after a security researcher (Hanno Böck) started a thread in MozDev Security Policy and provided additional information and a repository of private keys generated with a vulnerable OpenSSL version. In response, Let's Encrypt blocked the affected keys and triggered automatic revocation for the two affected certificates, then completed a dry run across 598,824 keys and confirmed no additional affected certificates were found. The CA also deployed a patch to production to support blocking EC keys by using a database table rather than a flat file format. Let's Encrypt stated it stopped issuing certificates with Debian weak ECDSA keys and that all affected keys on the ECP256 and ECP384 curves have been blocked. The bug was resolved as FIXED, with the CA indicating there were no additional remediation items and requesting closure after monitoring.

Model: gpt-5.4-nano Generated: 2026-06-13 21:17 UTC Revised: 2026-06-16 19:22 UTC Confidence: 0.84 4 comments
Chronology
  1. Two certificates were issued that matched the SPKI of elliptic curve Debian weak keys (ECP256/ECP384).
  2. A security researcher notified Mozilla’s MozDev Security Policy about the Debian Weak Key vulnerability’s applicability to EC keys and provided supporting materials.
  3. Two affected certificates were found and their private keys were manually blocked, triggering automatic revocation.
  4. Blocking of 598,824 weak keys on the ECP256 and ECP384 curves was completed with no additional certificates found.
Thread Activity
  1. Internet Security Research Group — Opened an incident report describing discovery of two affected certificates, the CA’s blocking and revocation actions, and stating issuance with Debian weak ECDSA keys had stopped.
  2. Internet Security Research Group — Updated that there were no additional remediation items and that the CA would continue monitoring without further updates unless questions arose.
  3. Internet Security Research Group — Requested that the ticket be closed because there appeared to be no further questions.
  4. Mozilla representative — Indicated the ticket would be closed on or about Wed. 26-Oct-2022.
Participants
Internet Security Research Group Mozilla representative
Similar Local Cases
#1838667 RESOLVED Certificate Misissuance Opened 2023-06-15 · Closed 2023-07-05 · 95% similar
Let's Encrypt: Duplicate Serial Numbers
#1966515 RESOLVED Certificate Misissuance Opened 2025-05-14 · Closed 2025-06-04 · 93% similar
Let's Encrypt: Issuance for Invalid Internationalized Domain Name
#1735247 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2021-10-11 · Closed 2023-02-22 · 87% similar
Let's Encrypt: Mis-issued certificates related to SC48v2
#1391867 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2017-08-19 · Closed 2023-02-22 · 81% similar
Let's Encrypt: Non-BR-Compliant Certificate Issuance
#1319609 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2016-11-23 · Closed 2023-02-22 · 79% similar
Let's Encrypt: certs issued contrary to CPS due to incomplete blocklist
#1462735 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2018-05-18 · Closed 2023-02-22 · 78% similar
Let's Encrypt: Case-sensitive CAA tag processing
#1398427 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2017-09-09 · Closed 2023-02-22 · 77% similar
Let's Encrypt: CAA Misissuances
#1752670 RESOLVED Certificate Misissuance Self Reported Incident Opened 2022-01-29 · Closed 2024-05-09 · 77% similar
Let's Encrypt: TLS Using ALPN Allows Additional Identifiers in Challenge Certificate

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action