Estonian eID being affected, the 2 keys allowed to sign the Estonian TSL are weak. These are the only TSL signer keys vulnerable. This was notified yesterday. (TSL is a list of Qualified trust service providers issued by every Member State, a list of Trust Anchors for eIDAS) _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy
ROCA fingerprints found on crt.sh (was Re: Efficient test for weak RSA keys generated in Infineon TPMs / smartcards)
Erwann Abalea via dev-security-policy Wed, 18 Oct 2017 23:36:35 -0700
- Re: Efficient test for weak... Rob Stradling via dev-security-policy
- Re: Efficient test for... Matt Palmer via dev-security-policy
- Re: Efficient test for weak... Jakob Bohm via dev-security-policy
- Re: Efficient test for... Rob Stradling via dev-security-policy
- Re: Efficient test... Jonathan Rudenberg via dev-security-policy
- ROCA fingerprints ... Rob Stradling via dev-security-policy
- Re: ROCA finge... Hanno Böck via dev-security-policy
- Re: ROCA fingerpri... Matthew Hardeman via dev-security-policy
- Re: ROCA fingerpri... Kim Nguyen via dev-security-policy
- Re: ROCA fingerpri... Kim Nguyen via dev-security-policy
- ROCA fingerprints ... Erwann Abalea via dev-security-policy
- Re: ROCA fingerpri... Nick Lamb via dev-security-policy
- Re: ROCA fingerpri... Erwann Abalea via dev-security-policy
- Re: Efficient test for weak... Nick Lamb via dev-security-policy
- RE: Efficient test for... Tim Hollebeek via dev-security-policy
- Re: Efficient test for... Hector Martin 'marcan' via dev-security-policy
- Re: Efficient test... Hector Martin 'marcan' via dev-security-policy

