← Telia Company cases
Bugzilla #1896108
Certificate Misissuance
Telia: Certificates Issued with lower case value in subject:countryName
RESOLVED
FIXED
Telia Company
AI Summary
Telia CA issued thirteen TLS certificates with the 'subject:countryName' attribute in lowercase letters, violating CA/Browser Forum Baseline Requirements. The affected certificates will be revoked, but Telia CA anticipates challenges in meeting the five-day revocation deadline due to potential subscriber impact. The CA has committed to improving its processes to prevent similar misissuances in the future.
Chronology
- First certificate with 'subject:countryName' malformed was issued.
- Initial incident report submitted.
- Update on delayed revocation of affected certificates.
- All action items completed and issue ready for closure.
Participants
Antti Backman
Corey Bonnell
Ryan Daurne
Tadahiko Ito
Tim Hollebeek
Mathew Hodson
Ben Wilson
External References
Similar Local Cases
Telia: S/MIME Certificate issued to expired domain
Telia: TLS incorrect AIA caIssuer URI and incorrect CDP
Telia: TLS certificates issued in violation of TLS BR v2.0.1
Telia: S/MIME Misissuance incorrect AIA id-ca-caIssuer http:URI
Telia: S/MIME certificates issued in violation of S/MIME BR v1.0.1
Telia: S/MIME Misissuance - incorrect subject information for Multipurpose sponsor-validated-profile
Entrust: EV TLS Certificate cPSuri missing
DigiCert: Invalid Characters in S/MIME Subject Fields