← Telia Company cases
Bugzilla #1965459 Certificate Misissuance

Telia: S/MIME Misissuance incorrect AIA id-ca-caIssuer http:URI

RESOLVED FIXED Telia Company
AI Summary

Telia CA issued two S/MIME certificates that violated S/MIME Baseline Requirements regarding the Authority Information Access (AIA) extension. The misissuance was identified shortly after issuance, leading to the immediate revocation of both certificates. The root causes included reliance on incorrect values from a certificate signing request and insufficient validation processes. Telia has since implemented corrective measures, including custom pre-issuance linting and policy updates to prevent recurrence of similar issues.

Model: gpt-4o-mini Generated: 2026-06-13 20:51 UTC Confidence: 0.90
Chronology
  1. CSR request received for the first certificate
  2. Misissuance identified and certificates revoked
  3. Full incident report disclosed
  4. Final call for comments on incident report
Participants
Antti Backman
External References
Similar Local Cases
#1969036 RESOLVED Certificate Misissuance Opened 2025-05-28 · Closed 2025-10-31 · 66% similar
Telia: TLS incorrect AIA caIssuer URI and incorrect CDP
#1920659 RESOLVED Certificate Misissuance Opened 2024-09-24 · Closed 2024-12-06 · 62% similar
Telia: S/MIME Certificate issued to expired domain
#1859314 RESOLVED Certificate Misissuance Opened 2023-10-16 · Closed 2024-01-26 · 60% similar
Telia: TLS certificates issued in violation of TLS BR v2.0.1
#1856591 RESOLVED Certificate Misissuance Opened 2023-10-03 · Closed 2024-01-26 · 58% similar
Telia: S/MIME certificates issued in violation of S/MIME BR v1.0.1
#1896108 RESOLVED Certificate Misissuance Opened 2024-05-10 · Closed 2024-09-06 · 58% similar
Telia: Certificates Issued with lower case value in subject:countryName
#2012101 RESOLVED Certificate Misissuance Opened 2026-01-23 · Closed 2026-04-06 · 58% similar
Telia: S/MIME Misissuance - incorrect subject information for Multipurpose sponsor-validated-profile
#1551372 RESOLVED Certificate Misissuance Opened 2019-05-14 · Closed 2023-02-22 · 55% similar
Telia: "Some-State" in stateOrProvinceName
#1524567 RESOLVED Certificate Misissuance Opened 2019-02-01 · Closed 2023-02-22 · 52% similar
Telia: invalid IP value in SAN DNS field

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action