← Telia Company cases
Bugzilla #2012934
Certificate Problem Report
Telia: Incorrect CRL URL on a Root CA record in CCADB
RESOLVED
FIXED
Telia Company
AI Summary
Telia Company reported an incorrect CRL URL for their RSA Signing Root CA v3 in the CCADB. The issue was identified on January 28, 2026, and was due to an incorrect URL set during the initial submission in February 2025. The incorrect URL pointed to a CRL issued by another Root CA. Telia has since corrected the URL and implemented measures to prevent similar issues in the future, including a four-eyes principle for data updates.
Chronology
- Non-compliance start date
- Non-compliance identified and corrected
Participants
Antti Backman
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
Telia: Findings in 2025 ETSI Audit - Incident Report #1 – Vulnerability management
Telia: Delayed revocation of seven (7) certificates related to incident 1896108
Telia: TLS OV certificate with subject countryName and localityName mismatch
Telia: Issued three precertificates with non-NIST EC curve
Telia: Invalid email contact address was used for few domains
Telia: AIA CA Issuer field pointing to PEM encoded cert
Telia: Two Intermediate CA certificates not listed in audit report
Telia: Disallowed curve (P-521) in leaf certificate