There are several intermediates on the dashboard (https://crt.sh/mozilla-disclosures) that have been incorrectly disclosed and have not been brought up on this list yet:
a) One intermediate issued by SECOM is undisclosed: - https://crt.sh/?sha256=d8df7e1183d6def561d84d56e621a6f36a065dc717f3959bb3bafc824556d48c b) Two intermediates issued by Swisscom do not have audit details disclosed: - https://crt.sh/?sha256=5299ea42b7ee3d4422be47d0bfc64217426b57ee55a8e5465836a741c97e628a - https://crt.sh/?sha256=801c82cbc298c07f082b9d2d22a0f23427e638f94f75dee4d0e081abc9046e52 (there are a few other intermediates on this list, but they are discussed elsewhere) c) Two intermediates issued by Wells Fargo and one issued by SwissSign were revoked via CRL but have not been marked as revoked in the CCADB: - https://crt.sh/?sha256=766bed35f9a700f74cec8ef941be03e5d04633d032330a06a0735715fe163c53 - https://crt.sh/?sha256=e8a159a056f8f67553941228ce5dff7ef72a76f34f25b225837cfc334cf6fede - https://crt.sh/?sha256=98c967747ed97a1d9e1767a986b796165d9e95efad3d68fc5712e4ae97d5f21c Jonathan _______________________________________________ dev-security-policy mailing list dev-security-policy@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-security-policy