← Actalis cases
Bugzilla #1883731 Certificate Misissuance

Actalis: Certificates issued with invalid RDN order

RESOLVED FIXED Actalis
AI Summary

Actalis identified a mis-issuance of 263 TLS EV certificates due to incorrect relative encoding order of the streetAddress attribute, violating the Baseline Requirements. Following an internal investigation initiated by a report on March 4, 2024, the CA halted the issuance of new certificates and confirmed the issue by March 11, 2024. All affected certificates were revoked by March 15, 2024. The root cause was attributed to a combination of software misconfiguration and insufficient linting checks, prompting Actalis to enhance their internal processes and linting practices.

Model: gpt-4o-mini Generated: 2026-06-13 21:30 UTC Confidence: 0.90
Chronology
  1. Received report of potential issue affecting EV certificate.
  2. Confirmed mis-issuance and decided to revoke affected certificates.
  3. All affected certificates were revoked.
Participants
Marco Menonna Ryan Dickson Rebecca K ChyaHung TWCA Martijn Katerbarg
Similar Local Cases
#2012157 RESOLVED Certificate Misissuance Opened 2026-01-23 · Closed 2026-03-08 · 53% similar
Actalis: Issuance of certificate using keys previously reported as compromised
#1534295 RESOLVED Certificate Misissuance Opened 2019-03-11 · Closed 2023-02-22 · 53% similar
Actalis: Insufficient serial number entropy
#1717357 RESOLVED Certificate Misissuance Opened 2021-06-20 · Closed 2023-02-22 · 52% similar
Actalis: Issuance of intermediates after 2020-08-20 that do not comply with Mozilla Policy and the Baseline Requirements
#1747915 RESOLVED Certificate Misissuance Opened 2021-12-29 · Closed 2023-02-22 · 50% similar
Sectigo: Incorrect JOI Country value
#1884532 RESOLVED Certificate Misissuance Opened 2024-03-09 · Closed 2024-07-11 · 50% similar
ACCV: Certificates issued with cRLIssuer in CDP extension
#1405817 RESOLVED Certificate Misissuance Opened 2017-10-04 · Closed 2023-02-22 · 50% similar
Actalis: Certs issued with same issuer and serial number
#1876775 RESOLVED Certificate Misissuance Opened 2024-01-26 · Closed 2024-03-04 · 49% similar
Sectigo: Wrong usage of LEI records for the issuance of SMIME Certificates
#1891245 RESOLVED Certificate Misissuance Opened 2024-04-12 · Closed 2024-05-13 · 49% similar
Sectigo: EV Certificate issuance with incorrect subject:serialNumber attribute value

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action