← Sectigo cases
Bugzilla #1915883 Certificate Misissuance

Sectigo: Missing data in cabfOrganizationIdentifier

RESOLVED FIXED Sectigo
AI Summary

Sectigo identified a misissuance issue affecting five certificates due to a problem with the cabfOrganizationIdentifier extension. The issue arose from the parsing of the organizationIdentifier, which failed to account for hyphen-minus characters in the Registration Reference. Following the discovery, a patch was developed and deployed, and the affected certificates were revoked on September 3, 2024. The incident response was completed with all action items addressed, and monitoring for further questions is ongoing.

Model: gpt-4o-mini Generated: 2026-06-13 20:56 UTC Confidence: 0.90
Chronology
  1. Received a recommendation to investigate 19 certificates.
  2. Identified issues with cabfOrganizationIdentifier extension.
  3. Deployed patch to issuance system.
  4. Revoked affected certificates.
  5. Requested closure of the bug.
Participants
Martijn Katerbarg Ben Wilson
External References
Similar Local Cases
#1860299 RESOLVED Certificate Misissuance Opened 2023-10-20 · Closed 2023-12-02 · 69% similar
Sectigo: SMIME issuance with insufficient validation of mailbox authorization or control
#1895722 RESOLVED Certificate Misissuance Opened 2024-05-08 · Closed 2024-06-05 · 66% similar
Sectigo: Incorrect inclusion of DBA name
#1782356 RESOLVED Certificate Misissuance Opened 2022-07-30 · Closed 2023-02-22 · 63% similar
Sectigo: Misspelled city name in localityName field
#1747915 RESOLVED Certificate Misissuance Opened 2021-12-29 · Closed 2023-02-22 · 59% similar
Sectigo: Incorrect JOI Country value
#1891245 RESOLVED Certificate Misissuance Opened 2024-04-12 · Closed 2024-05-13 · 59% similar
Sectigo: EV Certificate issuance with incorrect subject:serialNumber attribute value
#1710243 RESOLVED Certificate Misissuance Opened 2021-05-08 · Closed 2023-02-22 · 58% similar
Sectigo: Invalid stateOrProvinceName
#1876775 RESOLVED Certificate Misissuance Opened 2024-01-26 · Closed 2024-03-04 · 58% similar
Sectigo: Wrong usage of LEI records for the issuance of SMIME Certificates
#1665763 RESOLVED Certificate Misissuance Opened 2020-09-17 · Closed 2023-02-22 · 57% similar
Sectigo: Failure to revoke within 5 days

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action