Bug 1767688 - Intermittent mis-reporting potential security risk SEC_ERROR_UNKNWON_ISSUER
Summary: Intermittent mis-reporting potential security risk SEC_ERROR_UNKNWON_ISSUER
Keywords:
Status: CLOSED DUPLICATE of bug 1752303
Alias: None
Product: Fedora
Classification: Fedora
Component: firefox
Version: 31
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Gecko Maintainer
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2019-11-01 03:05 UTC by charles profitt
Modified: 2019-11-01 10:01 UTC (History)
11 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2019-11-01 10:01:31 UTC
Type: Bug
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Mozilla Foundation 1593167 0 None None None 2019-11-01 03:05:51 UTC

Description charles profitt 2019-11-01 03:05:51 UTC
Description of problem:
Using Firefox 70 I get certificate errors when navigating to pages.


Version-Release number of selected component (if applicable):


How reproducible:
Open Firefox 70 on Fedora 30 and 31. Navigate to either mlb.com or nfl.com. One out of 5 times there is a certificate error.

Steps to Reproduce:
1. Opened browser and navigated to mlb.com and nfl.com.
2. Close browser and reopen - navigate to mlb.com and nfl.com
3. repeat

Actual results:
Received warning.
Warning: Potential Security Risk Ahead
SEC_ERROR_UNKNOWN_ISSUER

Certificate is from DigiCert ECC Secure Server CA

Serial Number:
0B:54:63:60:DA:9F:10:FF:FA:65:F9:D9:DF:5E:C1:25

SHA-256 Fingerprint:
A6:F9:49:FE:96:2C:EF:6A:5F:E7:43:2B:20:E4:AF:47:8F:82:AB:54:E5:69:AF:C3:C3:22:9E:0F:54:E0:FB:D0

Expected results:
The site should have been verified as secure.

Additional info:
This is an install of Firefox 70 on Fedora 30 and 31.

I uninstalled 70 and reinstalled 69. Under 69 I was unable to reproduce this error.

This error does not happen consistently. If I close the browser after receiving the error, reopen the browser the error will not be present. The error happens roughly 1 out of 5 attempts.

I compared the certificate received from an error session, a successful session and all the sessions in Firefox 69 and they were the same. Firefox 69 did not exhibit the issue in 30 attempts.

Comment 1 Martin Stransky 2019-11-01 10:01:31 UTC
Please check new builds from https://bugzilla.redhat.com/show_bug.cgi?id=1752303#c18

*** This bug has been marked as a duplicate of bug 1752303 ***


Note You need to log in before you can comment on or make changes to this bug.