← Microsec Ltd. cases
Bugzilla #2066809 Ca Certificate Compliance Incident Self Reported Incident Revocation Issue Subscriber Agreement Issue

Microsec insufficient support for unspecified (0) revocation reason

ASSIGNED Microsec Ltd.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

Microsec reported that its revocation tooling does not let customers initiate revocation without choosing a revocation reason, and it also does not automatically default to CRLReason “unspecified (0)” when no reason is provided. The bug cites BR 7.2.2, which requires CA-provided tools to make revocation reasons easy to specify and to default to no revocation reason. The incident was disclosed as a preliminary incident report, and the source of disclosure is stated to be the Apple Root Program. The thread provided does not include any remediation steps or closure; the case was still assigned at the time of the snapshot.

Model: gpt-5.4-mini Generated: 2026-09-06 10:59 UTC Confidence: 0.93 2 comments
Chronology
  1. Microsec identified that its revocation tools did not support defaulting to CRLReason unspecified (0) when no revocation reason was provided.
Thread Activity
  1. Microsec representative — Opened the bug and posted a preliminary incident report describing the revocation-tooling issue and citing BR 7.2.2.
  2. Microsec representative — Noted that the source of the incident disclosure was the Apple Root Program.
Participants
Microsec representative
External References
Similar Local Cases
#2065157 ASSIGNED Ca Certificate Compliance Delayed Revocation Incident Self Reported Incident Opened 2026-08-20 Still Open · 68% similar
SwissSign: Delayed revocation in Bug 2057448
#2063842 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Problem Reporting Failure Opened 2026-08-15 Still Open · 68% similar
NETLOCK: Failure to file a preliminary incident report within 72 hours (OCSP responder incident, Bug 2051459)
#2054464 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Problem Reporting Failure Opened 2026-07-13 · Closed 2026-08-17 · 68% similar
CFCA: Delayed response to CPR-related email related with bug 2049179
#2053948 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Ccadb Disclosure Issue Opened 2026-07-09 Still Open · 68% similar
IdenTrust: Delayed disclosure of Intermediate CA in CCADB
#2032468 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Certificate Misissuance Opened 2026-04-16 · Closed 2026-08-09 · 68% similar
VISA: Misissuance detected by PKIMetal
#2058261 ASSIGNED Ca Documents Incident Self Reported Incident Policy Document Issue Opened 2026-07-27 Still Open · 67% similar
Google Trust Services: CPS Missing root program attestation
#2056934 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Policy Document Issue Opened 2026-07-22 Still Open · 67% similar
Actalis: failure to timely update CP/CPS for AgID SubCAs
#2055539 RESOLVED Problem Reporting Failure Incident Externally Reported Incident Revocation Issue Opened 2026-07-16 · Closed 2026-08-11 · 67% similar
DigiCert: Delayed availability of OCSP responses

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action