← GlobalSign nv-sa cases
Bugzilla #1793441 Technical Compliance

GlobalSign: CRL contains invalid signature algorithm

RESOLVED FIXED GlobalSign nv-sa
AI Summary

GlobalSign reported an issue where a Certificate Revocation List (CRL) contained an invalid signature algorithm, specifically using `sha256WithRSAEncryption` for a CRL issued by an elliptic curve key CA. The problem was identified following a Bugzilla report, leading to an internal investigation. GlobalSign acknowledged the issue, confirmed that no active certificates were affected, and updated their CRL signing algorithm logic. The updated logic was deployed successfully, resolving the issue.

Model: gpt-4o-mini Generated: 2026-06-13 21:35 UTC Confidence: 0.95
Chronology
  1. Bugzilla ticket created and internal SOC ticket initiated.
  2. GlobalSign confirmed the issue and began investigation.
  3. Updated CRL logic deployed and confirmed to be functioning correctly.
Participants
Andrew Ayer Christophe Bonjean bwilson@mozilla.com
Similar Local Cases
#1914893 RESOLVED Technical Compliance Opened 2024-08-26 · Closed 2024-09-18 · 54% similar
Amazon Trust Services: CRL not DER-encoded
#1793440 RESOLVED Technical Compliance Opened 2022-10-03 · Closed 2023-02-22 · 49% similar
D-TRUST: CRL not DER-encoded
#1650018 RESOLVED Technical Compliance Opened 2020-07-02 · Closed 2023-02-22 · 48% similar
GlobalSign: Cross Certificate with non-conforming CABF Policy OIDs
#1732745 RESOLVED Technical Compliance Opened 2021-09-27 · Closed 2023-02-22 · 48% similar
Certainly: Root CRL validity period exceeds maximum by one second
#2028195 RESOLVED Technical Compliance Opened 2026-03-31 · Closed 2026-04-11 · 46% similar
GoDaddy: inconsistent CP/CPS disclosure
#1848280 RESOLVED Technical Compliance Opened 2023-08-11 · Closed 2023-10-12 · 46% similar
Microsoft PKI Services: 3-Month Access Review Process Failure
#1738191 RESOLVED Technical Compliance Opened 2021-10-28 · Closed 2023-02-22 · 46% similar
GDCA: CRL validity period exceeds allowed value by one second
#1772644 RESOLVED Technical Compliance Opened 2022-06-04 · Closed 2023-02-22 · 46% similar
Apple: CRL issuance frequency deviates from CPS in some cases

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action