← Start Commercial (StartCom) Ltd. cases
Bugzilla #499178 Certificate Problem Report

Clarification requested regarding remediation of StartCom certificate issuance vulnerability

RESOLVED Start Commercial (StartCom) Ltd.
AI Summary

This case addresses a vulnerability in StartCom's certificate issuance system that allowed users to request certificates for any domain. The discussion revolves around the remediation steps taken by StartCom and the verification of previously issued certificates. The case was resolved with the conclusion that StartCom had appropriate measures in place and that no invalid certificates were found post-incident.

Model: gpt-4o-mini Generated: 2026-06-13 12:12 UTC Confidence: 0.90
Chronology
  1. Initial report of vulnerability and request for clarification
  2. Case marked as resolved
Participants
Sam Johnston Kathleen Wilson Eddy Nigg
External References
Similar Local Cases
#1266942 RESOLVED Certificate Problem Report Opened 2016-04-23 · Closed 2022-11-14 · 66% similar
StartCom: IV without localityName or stateOrProvinceName
#1212655 RESOLVED Certificate Problem Report Opened 2015-10-07 · Closed 2022-11-14 · 64% similar
StartCom: public exponent is 1
#1006479 RESOLVED Certificate Problem Report Opened 2014-05-06 · Closed 2022-11-14 · 63% similar
StartCom: OCSP responder often returns "unknown" for recently-issued certificates
#611283 RESOLVED Certificate Problem Report Opened 2010-11-11 · Closed 2022-11-14 · 63% similar
StartCom cert not working in Firefox 4 beta
#1386894 RESOLVED Certificate Problem Report Opened 2017-08-03 · Closed 2023-02-22 · 57% similar
StartCom: Non-BR-Compliant Certificate Issuance -- adding Certnomis intermediates to OneCRL
#1402158 RESOLVED Certificate Problem Report Opened 2017-09-21 · Closed 2022-11-14 · 56% similar
Add Certinomis Cross-Signed StartCom certs to OneCRL
#1350615 RESOLVED Certificate Problem Report Opened 2017-03-25 · Closed 2022-11-14 · 56% similar
Camerfirma: Startcom are issuing by proxy using Camerfirma
#723722 RESOLVED Certificate Problem Report Opened 2012-02-02 · Closed 2022-11-14 · 54% similar
EV SSL certificate (and OCSP response) for www.camerfirma.com fails to meet EV Guidelines

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action