← Telia Company cases
Bugzilla #1859314
Certificate Misissuance
Telia: TLS certificates issued in violation of TLS BR v2.0.1
RESOLVED
FIXED
Telia Company
AI Summary
Telia Company reported the issuance of three TLS certificates containing a typo in the organization name, incorrectly listed as 'Nordic Investement Bank' instead of 'Nordic Investment Bank'. This issue was identified during a compliance review and was promptly investigated. The typo was due to a manual validation error when the organization's name exceeded the character limit for automated checks. All affected certificates were revoked shortly after the issue was discovered, and Telia CA has since implemented measures to prevent similar occurrences in the future.
Chronology
- Daily compliance review identified unvalidated organization names.
- Telia CA Administrator confirmed the typo and initiated revocation of affected certificates.
- Full disclosure report submitted detailing the incident.
- Telia CA requested closure of the incident as all actions were completed.
Participants
Antti Backman
Amir Aamidi
B. Wilson
External References
Similar Local Cases
Telia: S/MIME certificates issued in violation of S/MIME BR v1.0.1
Telia: TLS incorrect AIA caIssuer URI and incorrect CDP
Telia: S/MIME Misissuance - incorrect subject information for Multipurpose sponsor-validated-profile
Telia: S/MIME Certificate issued to expired domain
Telia: S/MIME Misissuance incorrect AIA id-ca-caIssuer http:URI
Telia: Certificates Issued with lower case value in subject:countryName
GlobalSign: TLS OV Certificate containing unverified information
Telia: invalid IP value in SAN DNS field