Bugs filed, or already existed…

To the CAs who have already responded here in this discussion, please also 
copy-paste your incident report into the bug.


> > 
> >      Issuer: https://crt.sh/?caid=140
> >    Issuer O: AC Camerfirma SA CIF A82743287
> >   Issuer CN: Chambers of Commerce Root
> > Subject CN: (id=1252) AC CAMERFIRMA AAPP
> >              (id=12625404) AC Camerfirma Express Corporate Server
> >    Serial #: 0d
> >       Certs: https://crt.sh/?id=1252
> >              https://crt.sh/?id=12625404
> >    Revoked?: No
> > 
> 
> I see these Camerfirma doppelgangers in the CCADB.

https://bugzilla.mozilla.org/show_bug.cgi?id=1405815

> 
> > 
> >      Issuer: https://crt.sh/?caid=935
> >    Issuer O: Actalis S.p.A./03358520967
> >   Issuer CN: Actalis Authentication Root CA
> > Subject CN: UniCredit Subordinate External
> >    Serial #: 3e:5d:be:44:e7:51:5a:5a
> >       Certs: https://crt.sh/?id=47081615
> >              https://crt.sh/?id=147626411
> >    Revoked?: No
> 
> 
> I am not finding these Actalis certs in the CCADB. Will include that in the 
> Actalis bug as well.
> 
> By the way, I do not see them listed here:
> https://crt.sh/mozilla-disclosures#undisclosed
> 

https://bugzilla.mozilla.org/show_bug.cgi?id=1405817


> > 
> > 
> >      Issuer: https://crt.sh/?caid=941
> >    Issuer O: Atos
> >   Issuer CN: Atos TrustedRoot 2011
> > Subject CN: Atos TrustedRoot Client-CA 2011
> >    Serial #: 5b:6a:8e:8d:5a:86:71:8f
> >       Certs: https://crt.sh/?id=12725513
> >              https://crt.sh/?id=12725727
> >              https://crt.sh/?id=12728899
> >    Revoked?: No
> > Subject CN: Atos TrustedRoot CodeSigning-CA 2011
> >    Serial #: 33:45:52:39:ec:16:dd:62
> >       Certs: https://crt.sh/?id=18068233
> >              https://crt.sh/?id=49643406
> >    Revoked?: Yes
> > Subject CN: Atos TrustedRoot Server-CA 2011
> >    Serial #: 6b:5d:91:bc:13:61:ce:75
> >       Certs: https://crt.sh/?id=705899
> >              https://crt.sh/?id=18068212
> >    Revoked?: Yes
> 
> 
> I see these Atos doppelgangers in the CCADB.
> 
> 

https://bugzilla.mozilla.org/show_bug.cgi?id=1329223


> > 
> > 
> >      Issuer: https://crt.sh/?caid=138
> >    Issuer O: SwissSign AG
> >   Issuer CN: SwissSign Gold CA - G2
> > Subject CN: AffirmTrust Networking
> >    Serial #: 84:3c:74:b1:aa:34:86:b1:c4:c7:a0:df:55:b5:e9
> >       Certs: https://crt.sh/?id=3386
> >              https://crt.sh/?id=1991456
> >    Revoked?: No
> > Subject CN: Trend Micro Gold CA
> >    Serial #: 49:e1:33:6e:94:e5:b6:a5:2d:a9:6e:d4:8a:e2:76
> >       Certs: https://crt.sh/?id=12629343
> >              https://crt.sh/?id=198226194
> >    Revoked?: Yes
> 
> I see these SwissSign doppelgangers in the CCADB.
> 

https://bugzilla.mozilla.org/show_bug.cgi?id=1404403


> > 
> > 
> >      Issuer: https://crt.sh/?caid=656
> >    Issuer O: Trustwave Holdings, Inc.
> >   Issuer CN: Trustwave Organization Issuing CA, Level 2
> > Subject CN: Trustwave Enterprise CA
> >    Serial #: 6b:49:d2:04
> >       Certs: https://crt.sh/?id=12624965
> >              https://crt.sh/?id=12629351
> >    Revoked?: Issuer cert revoked (https://crt.sh/?id=95565)
> > 
> >      Issuer: https://crt.sh/?caid=12391
> >    Issuer O: Trustwave Holdings, Inc.
> >   Issuer CN: Trustwave Enterprise CA
> > Subject CN: Trustwave Enterprise VPN CA
> >    Serial #: 41:90:ae:5d
> >       Certs: https://crt.sh/?id=12625419
> >              https://crt.sh/?id=12629788
> >    Revoked?: Issuer's issuer cert revoked (https://crt.sh/?id=95565)
> 
> 
> I see the revoked issuer is in CCADB. The other certs are not, but that's OK 
> since the revoked issuer is in OneCRL.
> 

https://bugzilla.mozilla.org/show_bug.cgi?id=1405826


Thanks,
Kathleen


_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to