← Izenpe S.A. cases
Bugzilla #1945867 Self Reported Incident Certificate Misissuance

Izenpe: Incorrect Unicode characters in Subject

RESOLVED FIXED Izenpe S.A.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

Izenpe S.A. reported a compliance issue involving the issuance of a certificate containing incorrect Unicode replacement characters in the Subject fields, violating RFC5280. The incident was triggered by a change in their web application that affected the encoding of special characters. Upon notification from the Chrome Root Program, the affected certificate was revoked promptly. Izenpe has since implemented corrective actions, including the integration of the Pkimetal tool for pre-issuance linting and has committed to improving their testing processes to prevent similar issues in the future. The case has been resolved with all action items completed.

Model: gpt-4o-mini Generated: 2026-06-13 21:14 UTC Revised: 2026-06-16 19:17 UTC Confidence: 0.90 16 comments
Chronology
  1. A certificate with incorrect encoding in Subject was issued.
  2. The certificate was revoked after notification from the Chrome Root Program.
  3. Izenpe requested closure of the incident report after completing all action items.
Thread Activity
  1. Izenpe S.A. — This is a preliminary report regarding Unicode replacement characters in Subject.
  2. Izenpe S.A. — On 2025-02-03 Izenpe issued a certificate containing Unicode Replacement characters.
  3. Izenpe S.A. — We have some delays regarding the configuration of Pkimetal on our testing environment.
  4. Izenpe S.A. — All Action Items disclosed in this report have been completed as described, and we request its closure.
Participants
Izenpe S.A. Mozilla representative Community commenter
External References
Similar Local Cases
#1876565 RESOLVED Self Reported Incident Certificate Misissuance Opened 2024-01-25 · Closed 2024-04-06 · 100% similar
Izenpe: Not allowed Qualifier ID OID on Certificate Policies extension
#1921254 RESOLVED Certificate Misissuance Self Reported Incident Opened 2024-09-26 · Closed 2025-02-19 · 100% similar
Izenpe: Duplicate attribute in Subject
#1948600 RESOLVED Self Reported Incident Policy Document Issue Opened 2025-02-17 · Closed 2025-07-01 · 97% similar
IZENPE: Outdated CPS for Izenpe Root
#1738421 RESOLVED Self Reported Incident Audit Finding Opened 2021-10-29 · Closed 2023-02-22 · 94% similar
Izenpe: CRL and ARL exceed validity period value by one second
#1976256 RESOLVED Self Reported Incident Opened 2025-07-08 · Closed 2025-11-20 · 92% similar
IZENPE: IssuingDistributionPoint extension in CRLs not marked as Critical
#1996857 RESOLVED Self Reported Incident Certificate Misissuance Opened 2025-10-28 · Closed 2025-12-11 · 90% similar
IZENPE: not allowed Key Usage in ocsp responder certificate
#1559765 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2019-06-17 · Closed 2023-02-22 · 88% similar
Izenpe: Multiple invalid EV certificates issued
#1651026 RESOLVED Certificate Misissuance Incident Remediation Tracking Opened 2020-07-07 · Closed 2023-02-22 · 87% similar
Izenpe: certificate issued to internal domain

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action