← DigiCert cases
Bugzilla #1936906 Certificate Misissuance

DigiCert: Invalid Characters in S/MIME Subject Fields

RESOLVED DigiCert
AI Summary

DigiCert experienced a misissuance of 21 S/MIME certificates due to a configuration error in their linting process, which allowed invalid characters in subject fields. The issue was identified through post-issuance checks, leading to the immediate revocation of the affected certificates. Remediation steps included fixing the linting configuration and enhancing logging and alerting mechanisms. DigiCert is committed to maintaining compliance and is in the process of deprecating the legacy system involved.

Model: gpt-4o-mini Generated: 2026-06-13 11:46 UTC Confidence: 0.95
Chronology
  1. Issue reported via post-issuance linting
  2. All affected certificates revoked
  3. Incident report closure summary drafted
  4. Bug ready to close
Participants
Tim Hollebeek Martijn Katerbarg Ben Wilson
External References
Similar Local Cases
#1888016 RESOLVED Certificate Misissuance Opened 2024-03-27 · Closed 2024-06-05 · 59% similar
Digicert: Failure to include CPS URI in 1 certificate
#1445857 RESOLVED Certificate Misissuance Opened 2018-03-15 · Closed 2023-02-22 · 59% similar
DigiCert: Mis-issuance of certificate with https in CN/SAN
#1397969 RESOLVED Certificate Misissuance Opened 2017-09-08 · Closed 2023-02-22 · 59% similar
DigiCert / Inteso San Paulo: Double dot characters
#1397961 RESOLVED Certificate Misissuance Opened 2017-09-07 · Closed 2023-02-22 · 59% similar
DigiCert / Justica: Invalid DNS names
#1895722 RESOLVED Certificate Misissuance Opened 2024-05-08 · Closed 2024-06-05 · 56% similar
Sectigo: Incorrect inclusion of DBA name
#1914911 RESOLVED Certificate Misissuance Opened 2024-08-26 · Closed 2025-01-08 · 56% similar
DigiCert: Unclear Disclosure of CAA Issuer Domain Names
#1782356 RESOLVED Certificate Misissuance Opened 2022-07-30 · Closed 2023-02-22 · 55% similar
Sectigo: Misspelled city name in localityName field
#1860299 RESOLVED Certificate Misissuance Opened 2023-10-20 · Closed 2023-12-02 · 55% similar
Sectigo: SMIME issuance with insufficient validation of mailbox authorization or control

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action